PT-2008-1699 · X.Org Foundation+1 · X11+1
Published
2008-02-12
·
Updated
2011-03-08
·
CVE-2008-0037
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Mac OS X versions 10.5 through 10.5.1
Description
The issue is related to X11 in Mac OS X, where it does not properly handle the "Allow connections from network client" preference when it is disabled. This allows remote attackers to bypass intended access restrictions and connect to the X server.
Recommendations
For Mac OS X versions 10.5 through 10.5.1, consider disabling the X11 service until a patch is available to prevent remote attackers from connecting to the X server.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Macos X
X11