{"id":"UBUNTU-CVE-2013-7221","details":"The automatic screen lock functionality in GNOME Shell (aka gnome-shell) before 3.10 does not prevent access to the \"Enter a Command\" dialog, which allows physically proximate attackers to execute arbitrary commands by leveraging an unattended workstation.","modified":"2025-07-16T07:31:31.235063Z","published":"2014-04-29T14:38:00Z","withdrawn":"2025-07-18T16:42:57Z","upstream":["CVE-2013-7221"],"references":[{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2013-7221"},{"type":"REPORT","url":"https://www.cve.org/CVERecord?id=CVE-2013-7221"}],"affected":[{"package":{"name":"gnome-shell","ecosystem":"Ubuntu:14.04:LTS","purl":"pkg:deb/ubuntu/gnome-shell@3.10.4-0ubuntu5.2?arch=source&distro=trusty"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.10.4-0ubuntu5.2"}]}],"versions":["3.8.4-0ubuntu5","3.8.4-0ubuntu6","3.8.4-0ubuntu7","3.8.4-0ubuntu8","3.10.3-0ubuntu1","3.10.3-0ubuntu2","3.10.3-0ubuntu3","3.10.4-0ubuntu1","3.10.4-0ubuntu3","3.10.4-0ubuntu4","3.10.4-0ubuntu5","3.10.4-0ubuntu5.1"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_name":"gnome-shell","binary_version":"3.10.4-0ubuntu5.2"},{"binary_name":"gnome-shell-common","binary_version":"3.10.4-0ubuntu5.2"},{"binary_name":"gnome-shell-dbg","binary_version":"3.10.4-0ubuntu5.2"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2013/UBUNTU-CVE-2013-7221.json"}},{"package":{"name":"gnome-shell","ecosystem":"Ubuntu:16.04:LTS","purl":"pkg:deb/ubuntu/gnome-shell@3.18.5-0ubuntu0.3?arch=source&distro=xenial"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.18.5-0ubuntu0.3"}]}],"versions":["3.16.4-0ubuntu1","3.18.1-1ubuntu1","3.18.2-0ubuntu1","3.18.2-0ubuntu2","3.18.3-3ubuntu1","3.18.4-0ubuntu1","3.18.4-0ubuntu2","3.18.4-0ubuntu3","3.18.5-0ubuntu0.1","3.18.5-0ubuntu0.2"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_name":"gnome-shell","binary_version":"3.18.5-0ubuntu0.3"},{"binary_name":"gnome-shell-common","binary_version":"3.18.5-0ubuntu0.3"},{"binary_name":"gnome-shell-dbg","binary_version":"3.18.5-0ubuntu0.3"},{"binary_name":"gnome-shell-dbgsym","binary_version":"3.18.5-0ubuntu0.3"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2013/UBUNTU-CVE-2013-7221.json"}}],"schema_version":"1.7.3","severity":[{"type":"Ubuntu","score":"medium"}]}