SCO OpenServer 5.0.5 through 5.0.7 only supports Xauthority style access control when users log in using scologin, which allows remote attackers to gain unauthorized access to an X session via other X login methods.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/16113 | vdb entry |
http://archives.neohapsis.com/archives/fulldisclosure/2004-05/0424.html | mailing list |
http://www.securityfocus.com/advisories/6684 | vendor advisory |