CVE-2011-0465

EPSS 18.0%

x11-xserver-utils - missing input sanitizing

發布日:2011/4/8修改日:2026/4/28

描述

xrdb.c in xrdb before 1.0.9 in X.Org X11R7.6 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a hostname obtained from a (1) DHCP or (2) XDMCP message.

受影響套件(2)

參考連結(1)