4.6
CVSSv2

CVE-2012-0064

Published: 10/02/2014 Updated: 11/02/2014
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

xkeyboard-config prior to 2.5 in X.Org prior to 7.6 enables certain XKB debugging functions by default, which allows physically proximate malicious users to bypass an X screen lock via keyboard combinations that break the input grab.

Vulnerable Product Search on Vulmon Subscribe to Product

xkeyboard config project xkeyboard-config 2.0

x x.org x11 1.0

x x.org x11 3.0

x x.org x11 4.0

x x.org x11 5.0

x x.org x11 7.1

x x.org x11 7.2

x x.org x11 7.3

x x.org x11 7.4

x x.org x11 6.5.1

x x.org x11 6.6

x x.org x11 6.7

x x.org x11 6.8

xkeyboard config project xkeyboard-config

xkeyboard config project xkeyboard-config 2.2

x x.org x11 6.0

x x.org x11 6.3

x x.org x11 6.8.2

x x.org x11 7.0

x x.org x11 7.5

xkeyboard config project xkeyboard-config 2.3

xkeyboard config project xkeyboard-config 2.1

x x.org x11 6.1

x x.org x11 6.4

x x.org x11 6.8.1

x x.org x11 6.9.0

x x.org x11

Vendor Advisories

Debian Bug report logs - #656410 xorg-server: screen lockers bypassed via key combo Package: xorg-server; Maintainer for xorg-server is Debian X Strike Force <debian-x@listsdebianorg>; Reported by: Michael Gilbert <michaelsgilbert@gmailcom> Date: Thu, 19 Jan 2012 02:12:01 UTC Severity: critical Found in versio ...