gnuserv before 3.12, as shipped with XEmacs, does not properly check the specified length of an X Windows MIT-MAGIC-COOKIE cookie, which allows remote attackers to execute arbitrary commands via a buffer overflow, or brute force authentication by using a short cookie length.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gnuserv | Andy_norman | * | 3.11 |