xvfb-run 1.6.1 in Debian GNU/Linux, Ubuntu, Fedora 10, and possibly other operating systems place the magic cookie (MCOOKIE) on the command line, which allows local users to gain privileges by listing the process and its arguments.
References
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2009-05-06 17:30
Updated : 2024-02-04 17:33
NVD link : CVE-2009-1573
Mitre link : CVE-2009-1573
CVE.ORG link : CVE-2009-1573
JSON object : View
Products Affected
ubuntu
- linux
branden_robinson
- xvfb-run
debian
- debian_linux
redhat
- fedora
CWE
CWE-264
Permissions, Privileges, and Access Controls