Bugzilla – Bug 1008036
VUL-1: CVE-2016-1000002: gdm: infoleak before screenlock
Last modified: 2018-01-24 13:40:06 UTC
CVE-2016-1000002 According to DWF: Gnome GDM 3.14.2 and possibly later are vulnerable to an information disclosure vulnerability, specifically when a laptop screen is closed to trigger the screen lock, and the lid is then re-opened the previous contents of the screen are visible for approx 1 second (long enough to take a picture of video record it) before the lock screen kicks in. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-1000002 https://github.com/distributedweaknessfiling/DWF-Database-Artifacts/blob/master/DWF/2016/1000002/CVE-2016-1000002.json
Low impact enough for a VUL-1
Upstream bugs: https://bugzilla.gnome.org/show_bug.cgi?id=753678 https://bugzilla.gnome.org/show_bug.cgi?id=776051 -> Won't fix