Personal tools
     DOCUMENTATION

Advisories:rPSA-2008-0120

From rPath Wiki

Jump to: navigation, search

rPath Security Advisory 2008-0120-1

Published: 2008-03-25

Products

  • rPath Linux 1
  • rPath Appliance Platform Linux Service 1

Rating

Major

Exposure Level Classification

Local User Deterministic Unauthorized Access

Updated Versions

  • gnome-ssh-askpass=conary.rpath.com@rpl:1/4.7p1-0.2-1
  • openssh=conary.rpath.com@rpl:1/4.7p1-0.2-1
  • openssh-client=conary.rpath.com@rpl:1/4.7p1-0.2-1
  • openssh-server=conary.rpath.com@rpl:1/4.7p1-0.2-1

rPath Issue Tracking System

References

Description

Previous versions of the openssh package are vulnerable to an
Unauthorized Access attack in which a local user may hijack
another local user's forwarded X connection.

Copyright 2008 rPath, Inc. This file is distributed under the terms of the MIT License. A copy is available at http://www.rpath.com/permanent/mit-license.html