CVE-2012-1620: Suckless Slock

Low severity, CVSS 3.6. EPSS: 0.5% chance of exploitation in the next 30 days.

slock 0.9 does not properly handle the XRaiseWindow event when the screen is locked, which might allow physically proximate attackers to obtain sensitive information by pressing a button, which reveals the desktop and active windows.

Affected products

Published 2012-07-12. Last modified 2026-06-16.