Описание
In gksu-polkit before 0.0.3, the source file for xauth may contain arbitrary commands that may allow an attacker to overtake an administrator X11 session.
Ссылки
- Broken Link
- Third Party Advisory
- Broken Link
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.0.3 (исключая)
cpe:2.3:a:gksu-polkit_project:gksu-polkit:*:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:*
EPSS
Процентиль: 62%
0.00432
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-20
Связанные уязвимости
CVSS3: 9.8
ubuntu
около 6 лет назад
In gksu-polkit before 0.0.3, the source file for xauth may contain arbitrary commands that may allow an attacker to overtake an administrator X11 session.
CVSS3: 9.8
debian
около 6 лет назад
In gksu-polkit before 0.0.3, the source file for xauth may contain arb ...
CVSS3: 9.8
github
больше 3 лет назад
In gksu-polkit before 0.0.3, the source file for xauth may contain arbitrary commands that may allow an attacker to overtake an administrator X11 session.
EPSS
Процентиль: 62%
0.00432
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-20