xrdb.c in xrdb before 1.0.9 in X.Org X11R7.6 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a hostname obtained from a (1) DHCP or (2) XDMCP message.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2011-04-08T15:00:00
Updated: 2017-08-16T14:57:01
Reserved: 2011-01-14T00:00:00
Link: CVE-2011-0465
JSON object: View
NVD Information
Status : Modified
Published: 2011-04-08T15:17:25.697
Modified: 2017-08-17T01:33:31.180
Link: CVE-2011-0465
JSON object: View
Redhat Information
No data.
CWE