CVE-2013-4509

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
1.9
LOW
Affected
1
PROJECT

Description

The default configuration of IBUS 1.5.4, and possibly 1.5.2 and earlier, when IBus.InputPurpose.PASSWORD is not set and used with GNOME 3, does not obscure the entered password characters, which allows physically proximate attackers to obtain a user password by reading the lockscreen.

The anthy engine for IBus (github.com/fujiwarat/ibus-anthy:master is a devel repo)
GitHubGitHub
26