Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
X.Org X server before 1.13.4 and 1.4.x before 1.14.1 does not properly restrict access to input events when adding a new hot-plug device, which might allow physically proximate attackers to obtain sensitive information, as demonstrated by reading passwords from a tty.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
X.Org X server 本地信息泄露漏洞
Vulnerability Description
X.Org是X.Org基金会运作的一个对X Window系统的官方参考实现,是开源的自由软件。 X.Org X服务器1.13.4之前的版本,1.14.1之前的1.4.x版本中存在漏洞,该漏洞源于当添加新的hot-plug设备时程序未正确限制对输入事件的访问。物理邻近的攻击者可利用该漏洞获得敏感信息,如从tty中读取密码。
CVSS Information
N/A
Vulnerability Type
N/A