This page lists publicly disclosed CVE vulnerabilities affecting suckless slock (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2016-6866 | slock allows attackers to bypass the screen lock via vectors involving an invalid password hash, which triggers a NULL pointer dereference and crash. | [email protected] | 7.5 | 1.70% | 2017-02-15 | 2026-05-13 |
| CVE-2012-1620 | slock 0.9 does not properly handle the XRaiseWindow event when the screen is locked, which might allow physically proximate attackers to obtain sensitive information by pressing a button, which reveals the desktop and active windows. | [email protected] | 3.6 | 0.06% | 2012-07-12 | 2026-04-29 |