Secunia Logo
Netsikker nu! 2008
 
CVE Reference: CVE-2008-1692
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-1692

Description:
Eterm 0.9.4 opens a terminal window on :0 if -display is not specified and the DISPLAY environment variable is not set, which might allow local users to hijack X11 connections. NOTE: realistic attack scenarios require that the victim enters a command on the wrong machine.

CVE Status:
Candidate

References:

SAID
  Secunia Advisory: SA29577

MISC
  http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=473127

GENTOO
  http://security.gentoo.org/glsa/glsa-200805-03.xml


Return to the previous page.