vulnerability

FreeBSD: VID-e80073d7-f8ba-11eb-b141-589cfc007716 (CVE-2016-10894): xtrlock -- xtrlock does not block multitouch events

Severity
2
CVSS
(AV:L/AC:L/Au:N/C:N/I:P/A:N)
Published
Aug 9, 2021
Added
Dec 10, 2025
Modified
Dec 10, 2025

Description

Debian reports: xtrlock did not block multitouch events so an attacker could still input and thus control various programs such as Chromium, etc. via so-called "multitouch" events including pan scrolling, "pinch and zoom" or even being able to provide regular mouse clicks by depressing the touchpad once and then clicking with a secondary finger.

Solution

freebsd-upgrade-package-xtrlock
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.