logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2017-2625

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2017-2625

Description:
It was discovered that libXdmcp before 1.1.2 including used weak entropy to generate session keys. On a multi-user system using xdmcp, a local attacker could potentially use information available from the process list to brute force the key, allowing them to hijack other users' sessions.
Last updated date:
02/12/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
10/09/2019
Reference url to background

https://www.x41-dsec.de/lab/advisories/x41-2017-001-xorg/

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2025

Privacy Policy