Security Advisory

CVE-2007-4752

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2007-09-12 01:00:00
Last updated 2024-08-07 15:08:33
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

ssh in OpenSSH before 4.7 does not properly handle when an untrusted cookie cannot be created and uses a trusted X11 cookie instead, which allows attackers to violate intended policy and gain privileges by causing an X client to be treated as trusted.