XDM in XFree86 opens a chooserFd TCP socket even when DisplayManager.requestPort is 0, which could allow remote malicious users to connect to the port, in violation of the intended restrictions.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
x.org x11r6 6.7.0 |
||
xfree86 project xdm cvs |
||
gentoo linux 1.4 |