Security Advisory

CVE-2001-0191

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2001-05-07 04:00:00
Last updated 2024-08-08 04:14:06
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

gnuserv before 3.12, as shipped with XEmacs, does not properly check the specified length of an X Windows MIT-MAGIC-COOKIE cookie, which allows remote attackers to execute arbitrary commands via a buffer overflow, or brute force authentication by using a short cookie length.