Bug 914694 (CVE-2015-1307) - VUL-1: CVE-2015-1307: plasma5-workspace: Network access from screen locker
Summary: VUL-1: CVE-2015-1307: plasma5-workspace: Network access from screen locker
Status: RESOLVED FIXED
Alias: CVE-2015-1307
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents (show other bugs)
Version: unspecified
Hardware: Other openSUSE 13.2
: P5 - None : Minor
Target Milestone: ---
Assignee: Forgotten User DV81ZEWZkN
QA Contact: Security Team bot
URL: https://smash.suse.de/issue/113128/
Whiteboard: maint:planned:update CVSSv2:RedHat:C...
Keywords:
Depends on:
Blocks:
 
Reported: 2015-01-26 09:06 UTC by Victor Pereira
Modified: 2018-10-19 18:32 UTC (History)
4 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---
lchiquitto: needinfo? (alarrosa)


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Victor Pereira 2015-01-26 09:06:42 UTC
CVE-2015-1307

plasma-workspace: Network access from screen locker

kde-workspace, plasma-workspace: X11 clients can eavesdrop input
events while screen is locked

CVE-2015-1307 - plasma-workspace: Network access from screen locker

CVE-2015-1308 - kde-workspace, plasma-workspace: X11 clients can eavesdrop 
input events while screen is locked


References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-1307
http://people.canonical.com/~ubuntu-security/cve/2015/CVE-2015-1307.html
Comment 2 Johannes Segitz 2015-04-10 07:59:33 UTC
ping. Can you please have a look?
Comment 3 Forgotten User DV81ZEWZkN 2015-04-10 09:09:58 UTC
Fixed in 13.2 and Factory a while back... forgot to close the report.