5.4
CVSSv2

CVE-2004-2655

Published: 31/12/2004 Updated: 03/10/2018
CVSS v2 Base Score: 5.4 | Impact Score: 6.9 | Exploitability Score: 4.9
VMScore: 481
Vector: AV:N/AC:H/Au:N/C:C/I:N/A:N

Vulnerability Summary

rdesktop 1.3.1 with xscreensaver 4.14, and possibly other versions, when running on Fedora and possibly other platforms, does not release the keyboard focus when xscreensaver starts, which causes the password to be entered into the active window when the user unlocks the screen.

Vulnerable Product Search on Vulmon Subscribe to Product

xscreensaver xscreensaver 4.16

xscreensaver xscreensaver 4.17

xscreensaver xscreensaver 4.14

Vendor Advisories

In some cases, xscreensaver did not properly grab the keyboard when reading the password for unlocking the screen, so that the password was typed into the currently active application window ...