CVE-2002-1510: Critical severity Xfree86 Project X11r6 vulnerability
Published Mar 3, 2003
·Updated
xdm, with the authComplain variable set to false, allows arbitrary attackers to connect to the X server if the xdm auth directory does not exist.
Affected Software
1 affected component
Xfree86 Project X11r6
Event History
Mar 3, 2003
CVE Published
05:00 AM
Sep 1, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1510?
CVE-2002-1510 has a high severity rating due to its potential to allow unauthorized access to the X server.
2
What causes the vulnerability CVE-2002-1510?
CVE-2002-1510 is caused by the xdm configuration setting 'authComplain' set to false when the xdm authentication directory is absent.
3
How do I fix CVE-2002-1510?
To fix CVE-2002-1510, ensure that the xdm authentication directory exists and set the 'authComplain' variable to true.
4
Which software is affected by CVE-2002-1510?
CVE-2002-1510 affects the XFree86 X Server versions prior to the fix.
5
Can CVE-2002-1510 lead to a security breach?
Yes, CVE-2002-1510 can lead to a security breach by allowing unauthorized attackers to connect to the X server.