CVE-2013-4426 Information

Description

pyxtrlock before 0.1 uses an incorrect variable name which allows physically proximate attackers to bypass the lock screen via multiple failed authentication attempts which trigger a crash.

Reference

http://seclists.org/oss-sec/2013/q4/109 https://github.com/leonnnn/pyxtrlock/blob/master/CHANGELOG https://github.com/leonnnn/pyxtrlock/issues/8

Share on: