Jump to content

Advisories MDKSA-2007:236: Updated openssh packages fix X11 cookie vulnerability


paul
 Share

Recommended Posts

A flaw in OpenSSH prior to 4.7 prevented ssh from properly handling

when an untrusted cookie could not be created and used a trusted X11

cookie instead, which could allow attackers to violate intended policy

and gain privileges by causing an X client to be treated as trusted.

 

The updated packages have been patched to correct these issue.

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
 Share

×
×
  • Create New...