Lucene search

K
cve[email protected]CVE-2011-0465
HistoryApr 08, 2011 - 3:17 p.m.

CVE-2011-0465

2011-04-0815:17:25
CWE-20
web.nvd.nist.gov
49
4
cve-2011-0465
xrdb
x.org x11r7.6
remote execution
shell metacharacters
security vulnerability

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

9.6 High

AI Score

Confidence

High

0.022 Low

EPSS

Percentile

89.5%

xrdb.c in xrdb before 1.0.9 in X.Org X11R7.6 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a hostname obtained from a (1) DHCP or (2) XDMCP message.

Affected configurations

NVD
Node
matthias_hopfxrdbRange1.0.8
OR
matthias_hopfxrdbMatch1.0.2
OR
matthias_hopfxrdbMatch1.0.3
OR
matthias_hopfxrdbMatch1.0.4
OR
matthias_hopfxrdbMatch1.0.5
OR
matthias_hopfxrdbMatch1.0.6
OR
matthias_hopfxrdbMatch1.0.7
OR
xx11Ranger7.6
OR
xx11Matchr1
OR
xx11Matchr2
OR
xx11Matchr3
OR
xx11Matchr4
OR
xx11Matchr5
OR
xx11Matchr6
OR
xx11Matchr6.1
OR
xx11Matchr6.3
OR
xx11Matchr6.4
OR
xx11Matchr6.5.1
OR
xx11Matchr6.6
OR
xx11Matchr6.7
OR
xx11Matchr6.7.0
OR
xx11Matchr6.8.0
OR
xx11Matchr6.8.1
OR
xx11Matchr6.8.2
OR
xx11Matchr6.9.0
OR
xx11Matchr7.0
OR
xx11Matchr7.1
OR
xx11Matchr7.2
OR
xx11Matchr7.3
OR
xx11Matchr7.4
OR
xx11Matchr7.5

References

Social References

More

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

9.6 High

AI Score

Confidence

High

0.022 Low

EPSS

Percentile

89.5%