CVE-2010-2532
Last modified
CVE-2010-2532 is a vulnerability of currently unknown severity. lxsession-logout in lxsession in LXDE, as used on SUSE openSUSE 11.3 and other platforms, does not lock the screen when the Suspend or Hibernate button is pressed, which might make it easier for physically proximate attackers to access an unattended laptop via a resume action. NOTE: there is no general agreement that this is a vulnerability, because separate control over locking can be an equally secure, or more secure, behavior in some threat environments.. EPSS estimates a 0.40% chance of exploitation in the next 30 days.
Description
lxsession-logout in lxsession in LXDE, as used on SUSE openSUSE 11.3 and other platforms, does not lock the screen when the Suspend or Hibernate button is pressed, which might make it easier for physically proximate attackers to access an unattended laptop via a resume action. NOTE: there is no general agreement that this is a vulnerability, because separate control over locking can be an equally secure, or more secure, behavior in some threat environments.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Opensuse | Opensuse | 11.3 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2010-2532?
How severe is CVE-2010-2532?
How do I fix CVE-2010-2532?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2010
- CVE-2010-2526The cluster logical volume manager daemon (clvmd) in lvm2-cl…
- CVE-2010-2527Multiple buffer overflows in demo programs in FreeType befor…
- CVE-2010-2528The clientautoresp function in family_icbm.c in the oscar pr…
- CVE-2010-2529Unspecified vulnerability in ping.c in iputils 20020927, 200…
- CVE-2010-2530Multiple integer signedness errors in smb_subr.c in the nets…
- CVE-2010-2531The var_export function in PHP 5.2 before 5.2.14 and 5.3 bef…
- CVE-2010-2533Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2010-2534The NetworkSyncCommandQueue function in network/network_comm…
- CVE-2010-2535Multiple cross-site scripting (XSS) vulnerabilities in the B…
- CVE-2010-2536Multiple cross-site scripting (XSS) vulnerabilities in rekon…
- CVE-2010-2537The btrfs_ioctl_clone function in fs/btrfs/ioctl.c in the Li…7.1
- CVE-2010-2538Integer overflow in the btrfs_ioctl_clone function in fs/btr…5.5
Are you affected by CVE-2010-2532?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
