DEBIAN-CVE-2008-1483

Advisory lineage Upstream: 1 Downstream: 1
Upstream
Downstream
Published: 24 Mar 2008, 23:44
Last modified:28 Apr 2026, 20:10

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

24 Mar 2008, 23:44
Published
Vulnerability first disclosed
28 Apr 2026, 20:10
Last Modified
Vulnerability information updated

Description

OpenSSH 4.3p2, and probably other versions, allows local users to hijack forwarded X connections by causing ssh to set DISPLAY to :10, even when another process is listening on the associated port, as demonstrated by opening TCP port 6010 (IPv4) and sniffing a cookie sent by Emacs.

Affected Systems

  • debianopenssh

    < 1:4.7p1-5 | < 1:4.7p1-5 | < 1:4.7p1-5 | < 1:4.7p1-5

References (1)