{"id":"UBUNTU-CVE-2013-2190","details":"The translate_hierarchy_event function in x11/clutter-device-manager-xi2.c in Clutter, when resuming the system, does not properly handle XIQueryDevice errors when a device has \"disappeared,\" which causes the gnome-shell to crash and allows physically proximate attackers to access the previous gnome-shell session via unspecified vectors.","modified":"2025-07-16T07:31:15.132503Z","published":"2013-10-17T23:55:00Z","withdrawn":"2025-07-18T16:42:51Z","upstream":["CVE-2013-2190"],"references":[{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2013-2190"},{"type":"REPORT","url":"http://www.openwall.com/lists/oss-security/2013/06/18"},{"type":"REPORT","url":"https://www.cve.org/CVERecord?id=CVE-2013-2190"}],"affected":[{"package":{"name":"clutter-1.0","ecosystem":"Ubuntu:14.04:LTS","purl":"pkg:deb/ubuntu/clutter-1.0@1.16.4-0ubuntu2?arch=source&distro=trusty"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.16.4-0ubuntu2"}]}],"versions":["1.14.4-3","1.16.0-1","1.16.4-0ubuntu1"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_name":"clutter-1.0-tests","binary_version":"1.16.4-0ubuntu2"},{"binary_name":"gir1.2-clutter-1.0","binary_version":"1.16.4-0ubuntu2"},{"binary_name":"libclutter-1.0-0","binary_version":"1.16.4-0ubuntu2"},{"binary_name":"libclutter-1.0-common","binary_version":"1.16.4-0ubuntu2"},{"binary_name":"libclutter-1.0-dbg","binary_version":"1.16.4-0ubuntu2"},{"binary_name":"libclutter-1.0-dev","binary_version":"1.16.4-0ubuntu2"},{"binary_name":"libclutter-1.0-doc","binary_version":"1.16.4-0ubuntu2"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2013/UBUNTU-CVE-2013-2190.json"}}],"schema_version":"1.7.3","severity":[{"type":"Ubuntu","score":"low"}]}