CVE-2011-0703: Input Validation
Published Nov 15, 2019
·Updated
In gksu-polkit before 0.0.3, the source file for xauth may contain arbitrary commands that may allow an attacker to overtake an administrator X11 session.
Affected Software
3 affected components
debian/gksu-polkit
Gksu-polkit Project Gksu-polkit<0.0.3
Debian Debian Linux=6.0
Event History
Nov 15, 2019
CVE Published
via MITRE·04:09 PM
Data Sourced
via MITRE·04:09 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2011-0703?
CVE-2011-0703 is classified as a moderate severity vulnerability.
2
How do I fix CVE-2011-0703?
To fix CVE-2011-0703, you should upgrade gksu-polkit to version 0.0.3 or later.
3
What software is affected by CVE-2011-0703?
CVE-2011-0703 affects gksu-polkit versions before 0.0.3 on Debian systems.
4
Can CVE-2011-0703 be exploited remotely?
CVE-2011-0703 is not a remotely exploitable vulnerability as it requires access to an administrator X11 session.
5
What are the potential consequences of CVE-2011-0703?
Exploitation of CVE-2011-0703 could allow an attacker to execute arbitrary commands in an administrator's X11 session.