leonnnn/pyxtrlock

leonnnn/pyxtrlock

Releases5
Frequency1 year 6 months
Last Release
Stars75
The X transparent screen lock rewritten in Python, using XCB and PAM.

CVE History

CVEPublishedCVSS v3CVSS v2
4.6 MEDIUM

pyxtrlock 0.3 and earlier is affected by: Incorrect Access Control. The impact is: False locking impression when run in a non-X11 session. The fixed version is: 0.4.

3.6 LOW

pyxtrlock before 0.1 uses an incorrect variable name, which allows physically proximate attackers to bypass the lock screen via multiple failed authentication attempts, which trigger a crash.

2.1 LOW

pyxtrlock before 0.2 does not properly check the return values of the (1) xcb_grab_pointer and (2) xcb_grab_keyboard XCB library functions, which allows physically proximate attackers to gain access to the keyboard or mouse without unlocking the screen via unspecified vectors.