CVE Vulnerabilities

CVE-2004-0419

Published: Aug 18, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

XDM in XFree86 opens a chooserFd TCP socket even when DisplayManager.requestPort is 0, which could allow remote attackers to connect to the port, in violation of the intended restrictions.

Affected Software

NameVendorStart VersionEnd Version
X11r6X.org6.7.0 (including)6.7.0 (including)
XdmXfree86_projectcvs (including)cvs (including)
Red Hat Enterprise Linux 3RedHatXFree86-0:4.3.0-69.EL*
XorgUbuntudapper*
XorgUbuntudevel*
XorgUbuntuedgy*
XorgUbuntufeisty*

References