Description
ssh in OpenSSH before 4.7 does not properly handle when an untrusted cookie cannot be created and uses a trusted X11 cookie instead, which allows attackers to violate intended policy and gain privileges by causing an X client to be treated as trusted.
CVSS vector
AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4 Affected Packages2 packages
🔴Vulnerability Details
4GHSAGHSA-657x-xg3w-fxx6: ssh in OpenSSH before 4↗2022-05-01 ▶ OSVCVE-2007-4752: ssh in OpenSSH before 4↗2007-09-12 ▶ CVEListCVE-2007-4752: ssh in OpenSSH before 4↗2007-09-12 ▶ VulnCheckOpenBSD openssh Improper Input Validation↗2007 ▶ 📋Vendor Advisories
3UbuntuOpenSSH vulnerability↗2008-01-09 ▶ Red Hatopenssh falls back to the trusted x11 cookie if generation of an untrusted cookie fails↗2007-09-04 ▶ DebianCVE-2007-4752: openssh - ssh in OpenSSH before 4.7 does not properly handle when an untrusted cookie cann...↗2007 ▶ 💬Community
2BugzillaCVE-2007-4752 CVE-2008-1657 openssh multiple issues [Fedora 7]↗2007-09-06 ▶ BugzillaCVE-2007-4752 openssh falls back to the trusted x11 cookie if generation of an untrusted cookie fails↗2007-09-06 ▶