CVE-2009-1573
published 2009-05-06CVE-2009-1573: xvfb-run 1.6.1 in Debian GNU/Linux, Ubuntu, Fedora 10, and possibly other operating systems place the magic cookie (MCOOKIE) on the command line, which allows…
PriorityP417medium4.6CVSS 2.0
AVLACLAuNCPIPAP
EPSS
0.46%
36.7th percentile
xvfb-run 1.6.1 in Debian GNU/Linux, Ubuntu, Fedora 10, and possibly other operating systems place the magic cookie (MCOOKIE) on the command line, which allows local users to gain privileges by listing the process and its arguments.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| branden_robinson | xvfb-run | — | — |
| debian | xorg-server | < xorg-server 2:1.6.1.901-3 (bookworm) | xorg-server 2:1.6.1.901-3 (bookworm) |
| redhat | fedora | — | — |
| x.org | xorg-server | >= 0 < 2:1.6.1.901-3 | 2:1.6.1.901-3 |
| x.org | xorg-server | >= 0 < 2:1.6.1.901-3 | 2:1.6.1.901-3 |
| x.org | xorg-server | >= 0 < 2:1.6.1.901-3 | 2:1.6.1.901-3 |
| x.org | xorg-server | >= 0 < 2:1.6.1.901-3 | 2:1.6.1.901-3 |
CVSS provenance
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv4.6MEDIUM
vendor_debian4.6LOW
vendor_redhat4.6MEDIUM
vendor_ubuntu4.6MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-pw25-xwrj-vvp2: xvfb-run 1
ghsa_unreviewed·2022-05-02
CVE-2009-1573 [MEDIUM] GHSA-pw25-xwrj-vvp2: xvfb-run 1
xvfb-run 1.6.1 in Debian GNU/Linux, Ubuntu, Fedora 10, and possibly other operating systems place the magic cookie (MCOOKIE) on the command line, which allows local users to gain privileges by listing the process and its arguments.
OSV
CVE-2009-1573: xvfb-run 1
osv·2009-05-06·CVSS 4.6
CVE-2009-1573 [MEDIUM] CVE-2009-1573: xvfb-run 1
xvfb-run 1.6.1 in Debian GNU/Linux, Ubuntu, Fedora 10, and possibly other operating systems place the magic cookie (MCOOKIE) on the command line, which allows local users to gain privileges by listing the process and its arguments.
Ubuntu
X.org vulnerabilities
vendor_ubuntu·2010-05-18·CVSS 4.6
CVE-2009-1573 [MEDIUM] X.org vulnerabilities
Title: X.org vulnerabilities
Summary: A remote attacker could trigger a crash in X.org. In addition, the
xvfb-run tool left the session cookie visible when launching X.org.
Loïc Minier discovered that xvfb-run did not correctly keep the
X.org session cookie private. A local attacker could gain access
to any local sessions started by xvfb-run. Ubuntu 9.10 was not
affected. (CVE-2009-1573)
It was discovered that the X.org server did not correctly handle
certain calculations. A remote attacker could exploit this to
crash the X.org session or possibly run arbitrary code with root
privileges. (CVE-2010-1166)
Instructions: After a standard system update you need to restart your session to make
all the necessary changes.
Red Hat
xvfb-run insecurely displays mcookie value
vendor_redhat·2009-05-02·CVSS 4.6
CVE-2009-1573 [MEDIUM] xvfb-run insecurely displays mcookie value
xvfb-run insecurely displays mcookie value
xvfb-run 1.6.1 in Debian GNU/Linux, Ubuntu, Fedora 10, and possibly other operating systems place the magic cookie (MCOOKIE) on the command line, which allows local users to gain privileges by listing the process and its arguments.
Debian
CVE-2009-1573: xorg-server - xvfb-run 1.6.1 in Debian GNU/Linux, Ubuntu, Fedora 10, and possibly other operat...
vendor_debian·2009·CVSS 4.6
CVE-2009-1573 [MEDIUM] CVE-2009-1573: xorg-server - xvfb-run 1.6.1 in Debian GNU/Linux, Ubuntu, Fedora 10, and possibly other operat...
xvfb-run 1.6.1 in Debian GNU/Linux, Ubuntu, Fedora 10, and possibly other operating systems place the magic cookie (MCOOKIE) on the command line, which allows local users to gain privileges by listing the process and its arguments.
Scope: local
bookworm: resolved (fixed in 2:1.6.1.901-3)
bullseye: resolved (fixed in 2:1.6.1.901-3)
forky: resolved (fixed in 2:1.6.1.901-3)
sid: resolved (fixed in 2:1.6.1.901-3)
trixie: resolved (fixed in 2:1.6.1.901-3)
No detection rules found.
No public exploits indexed.
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=526678http://secunia.com/advisories/39834http://www.openwall.com/lists/oss-security/2009/05/05/2http://www.openwall.com/lists/oss-security/2009/05/05/4http://www.securityfocus.com/bid/34828http://www.ubuntu.com/usn/USN-939-1http://www.vupen.com/english/advisories/2010/1185https://exchange.xforce.ibmcloud.com/vulnerabilities/50348http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=526678http://secunia.com/advisories/39834http://www.openwall.com/lists/oss-security/2009/05/05/2http://www.openwall.com/lists/oss-security/2009/05/05/4http://www.securityfocus.com/bid/34828http://www.ubuntu.com/usn/USN-939-1http://www.vupen.com/english/advisories/2010/1185https://exchange.xforce.ibmcloud.com/vulnerabilities/50348
2009-05-06
Published