vulnerability
FreeBSD: VID-e80073d7-f8ba-11eb-b141-589cfc007716 (CVE-2016-10894): xtrlock -- xtrlock does not block multitouch events
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 2 | (AV:L/AC:L/Au:N/C:N/I:P/A:N) | Aug 9, 2021 | Dec 10, 2025 | Dec 10, 2025 |
Severity
2
CVSS
(AV:L/AC:L/Au:N/C:N/I:P/A:N)
Published
Aug 9, 2021
Added
Dec 10, 2025
Modified
Dec 10, 2025
Description
Debian reports: xtrlock did not block multitouch events so an attacker could still input and thus control various programs such as Chromium, etc. via so-called "multitouch" events including pan scrolling, "pinch and zoom" or even being able to provide regular mouse clicks by depressing the touchpad once and then clicking with a secondary finger.
Solution
freebsd-upgrade-package-xtrlock
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.