CVE-2015-1308: Kde Kde-Workspace

Medium severity, CVSS 4.3. EPSS: 1.4% chance of exploitation in the next 30 days.

kde-workspace 4.2.0 and plasma-workspace before 5.1.95 allows remote attackers to obtain input events, and consequently obtain passwords, by leveraging access to the X server when the screen is locked.

Affected products

  • Kde Kde-Workspace: up to and including 4.2.0
  • Kde Plasma-Workspace: up to and including 5.1

Published 2015-01-26. Last modified 2026-06-17.