CVE-2013-4509

The default configuration of IBUS 1.5.4, and possibly 1.5.2 and earlier, when IBus.InputPurpose.PASSWORD is not set and used with GNOME 3, does not obscure the entered password characters, which allows physically proximate attackers to obtain a user password by reading the lockscreen.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibus_project:ibus:1.5.4:*:*:*:*:*:*:*
cpe:2.3:a:ibus_project:ibus:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*

Information

Published : 2013-11-23 11:55

Updated : 2023-02-12 20:47


NVD link : CVE-2013-4509

Mitre link : CVE-2013-4509


JSON object : View

CWE
CWE-255

Credentials Management Errors

Advertisement

dedicated server usa

Products Affected

ibus_project

  • ibus

opensuse

  • opensuse