Computer Security
[EN] securityvulns.ru
no-pyccku



OpenSSH privilege escalation
Published:19.09.2007
Source:BUGTRAQ
SecurityVulns ID:8166
Type:local
Level:5/10
Description:Invalid usage of X11 cookies.
Affected:OPENSSH : OpenSSH 4.7
CVE:CVE-2007-4752 (ssh in OpenSSH before 4.7 does not properly handle when an untrusted cookie cannot be created and uses a trusted X11 cookie instead, which allows attackers to violate intended policy and gain privileges by causing an X client to be treated as trusted.)
Original documentdocumentFORESIGHT, FLEA-2007-0055-1 openssh openssh-client openssh-server gnome-ssh-askpass (19.09.2007)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru