OESA-2021-1403

Source
https://www.openeuler.org/en/security/security-bulletins/detail/?id=openEuler-SA-2021-1403
Import Source
https://repo.openeuler.org/security/data/osv/OESA-2021-1403.json
JSON Data
https://api.test.osv.dev/v1/vulns/OESA-2021-1403
Upstream
Published
2021-10-30T11:03:18Z
Modified
2025-08-12T05:04:43.286903Z
Summary
gnome-shell security update
Details

The GNOME Shell redefines user interactions with the GNOME desktop. In particular, it offers new paradigms for launching applications, accessing documents, and organizing open windows in GNOME. Later, it will introduce a new applets eco-system and offer new solutions for other desktop features, such as notifications and contacts management. The GNOME Shell is intended to replace functions handled by the GNOME Panel and by the window manager in previous versions of GNOME. The GNOME Shell has rich visual effects enabled by new graphical technologies.

Security Fix(es):

It was discovered that the gnome-shell lock screen since version 3.15.91 did not properly restrict all contextual actions. An attacker with physical access to a locked workstation could invoke certain keyboard shortcuts, and potentially other actions.(CVE-2019-3820)

Database specific
{
    "severity": "Medium"
}
References

Affected packages

openEuler:20.03-LTS-SP1 / gnome-shell

Package

Name
gnome-shell
Purl
pkg:rpm/openEuler/gnome-shell&distro=openEuler-20.03-LTS-SP1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.30.1-10.oe1

Ecosystem specific

{
    "noarch": [
        "gnome-shell-help-3.30.1-10.oe1.noarch.rpm"
    ],
    "aarch64": [
        "gnome-shell-3.30.1-10.oe1.aarch64.rpm",
        "gnome-shell-debugsource-3.30.1-10.oe1.aarch64.rpm",
        "gnome-shell-debuginfo-3.30.1-10.oe1.aarch64.rpm"
    ],
    "x86_64": [
        "gnome-shell-3.30.1-10.oe1.x86_64.rpm",
        "gnome-shell-debuginfo-3.30.1-10.oe1.x86_64.rpm",
        "gnome-shell-debugsource-3.30.1-10.oe1.x86_64.rpm"
    ],
    "src": [
        "gnome-shell-3.30.1-10.oe1.src.rpm"
    ]
}

openEuler:20.03-LTS-SP2 / gnome-shell

Package

Name
gnome-shell
Purl
pkg:rpm/openEuler/gnome-shell&distro=openEuler-20.03-LTS-SP2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.30.1-10.oe1

Ecosystem specific

{
    "noarch": [
        "gnome-shell-help-3.30.1-10.oe1.noarch.rpm"
    ],
    "aarch64": [
        "gnome-shell-3.30.1-10.oe1.aarch64.rpm",
        "gnome-shell-debugsource-3.30.1-10.oe1.aarch64.rpm",
        "gnome-shell-debuginfo-3.30.1-10.oe1.aarch64.rpm"
    ],
    "x86_64": [
        "gnome-shell-3.30.1-10.oe1.x86_64.rpm",
        "gnome-shell-debuginfo-3.30.1-10.oe1.x86_64.rpm",
        "gnome-shell-debugsource-3.30.1-10.oe1.x86_64.rpm"
    ],
    "src": [
        "gnome-shell-3.30.1-10.oe1.src.rpm"
    ]
}