Back

MEDIUM

openssh may set DISPLAY even if it's unable to listen on respective port

Published Mar 24, 2008

Description

OpenSSH 4.3p2, and probably other versions, allows local users to hijack forwarded X connections by causing ssh to set DISPLAY to :10, even when another process is listening on the associated port, as demonstrated by opening TCP port 6010 (IPv4) and sniffing a cookie sent by Emacs.

Affected products

Remediation

Red Hat statement

All openssh versions shipped in Red Hat Enterprise Linux 5 include the patch for this issue. Red Hat Enterprise Linux 3 is affected by this issue.

Metrics

Weaknesses (1)

References (58)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Mar 24, 2008
Updated Aug 7, 2024
Reserved Mar 24, 2008
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Jan 8, 2008