Security Advisory

CVE-2011-4613

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2014-02-05 19:00:00
Last updated 2024-08-07 00:09:19
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

The X.Org X wrapper (xserver-wrapper.c) in Debian GNU/Linux and Ubuntu Linux does not properly verify the TTY of a user who is starting X, which allows local users to bypass intended access restrictions by associating stdin with a file that is misinterpreted as the console TTY.