In gksu-polkit before 0.0.3, the source file for xauth may contain arbitrary commands that may allow an attacker to overtake an administrator X11 session.
References
Link | Resource |
---|---|
https://security-tracker.debian.org/tracker/CVE-2011-0703 | Third Party Advisory |
https://access.redhat.com/security/cve/cve-2011-0703 | Broken Link |
Information
Published : 2019-11-15 09:15
Updated : 2019-12-03 06:55
NVD link : CVE-2011-0703
Mitre link : CVE-2011-0703
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
debian
- debian_linux
gksu-polkit_project
- gksu-polkit