Back to search
CVE-2001-0191
Published: May 7, 2001
Modified: Aug 8, 2024
PUBLISHED
Description
gnuserv before 3.12, as shipped with XEmacs, does not properly check the specified length of an X Windows MIT-MAGIC-COOKIE cookie, which allows remote attackers to execute arbitrary commands via a buffer overflow, or brute force authentication by using a short cookie length.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
RHSA-2001:011
vendor-advisory
x_refsource_REDHAT
RHSA-2001:010
vendor-advisory
x_refsource_REDHAT
MDKSA-2001:019
vendor-advisory
x_refsource_MANDRAKE
gnuserv-tcp-cookie-overflow(6056)
vdb-entry
x_refsource_XF
20010202 Remote vulnerability in gnuserv/XEmacs
mailing-list
x_refsource_BUGTRAQ
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now