Incorrect Variable Name in Pyxtrlock Allows Bypass of Lock Screen via Failed Authentication Attempts

Incorrect Variable Name in Pyxtrlock Allows Bypass of Lock Screen via Failed Authentication Attempts

CVE-2013-4426 · LOW Severity

AV:L/AC:L/AU:N/C:P/I:N/A:P

pyxtrlock before 0.1 uses an incorrect variable name, which allows physically proximate attackers to bypass the lock screen via multiple failed authentication attempts, which trigger a crash.

Learn more about our Physical Security Assessment.