[Bug 210175] [NEW] [openssh] [CVE-2008-1483] allows local users to hijack forwarded X connections

hk47 bugtracker at slideomania.com
Tue Apr 1 11:18:17 BST 2008


*** This bug is a security vulnerability ***

Public security bug reported:

References:
MDVSA-2008:078 (http://www.mandriva.com/en/security/advisories?name=MDVSA-2008:078)

Quoting:
"OpenSSH allows local users to hijack forwarded X connections by causing
ssh to set DISPLAY to :10, even when another process is listening on
the associated port."

** Affects: openssh (Ubuntu)
     Importance: Undecided
         Status: New

** Visibility changed to: Public

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2008-1483

-- 
[openssh] [CVE-2008-1483] allows local users to hijack forwarded X connections
https://bugs.launchpad.net/bugs/210175
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in ubuntu.



More information about the Ubuntu-server-bugs mailing list