Loading
A locking protection bypass flaw was found in some versions of gnome-shell as shipped within CentOS Stream 8, when the "Application menu" or "Window list" GNOME extensions are enabled. This flaw allows a physical attacker who has access to a locked system to kill existing applications and start new ones as the locked user, even if the session is still locked.
Use CWE-667, Gnome vendor hub and Gnome-Shell product page to widen CVE-2021-20315 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2017-8288, CVE-2014-7300 and CVE-2010-4000 for nearby disclosures in the same product family.