Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
xvfb-run 1.6.1 in Debian GNU/Linux, Ubuntu, Fedora 10, and possibly other operating systems place the magic cookie (MCOOKIE) on the command line, which allows local users to gain privileges by listing the process and its arguments.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
xvfb-run Insecure Magic Cookie本地信息泄露漏洞
Vulnerability Description
xvfb-run是一个运行在一个虚拟X服务器环境下的X客户机或命令。 Debian GNU/Linux,Ubuntu,Fedora 10,以及其他操作系统中的xvfb-run 1.6.1把magic cookie (MCOOKIE)放在命令行上,这会允许本地用户通过列出程序和它的自变量,获得特权。
CVSS Information
N/A
Vulnerability Type
N/A