Unrated severityNVD Advisory· Published Feb 19, 2003· Updated Jun 16, 2026
CVE-2002-1160
CVE-2002-1160
Description
The default configuration of the pam_xauth module forwards MIT-Magic-Cookies to new X sessions, which could allow local users to gain root privileges by stealing the cookies from a temporary .xauth file, which is created with the original user's credentials after root uses su.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4Patches
Vulnerability mechanics
References
9- www.iss.net/security_center/static/11254.phpnvdVendor Advisory
- www.kb.cert.org/vuls/id/911505nvdThird Party AdvisoryUS Government Resource
- distro.conectiva.com.br/atualizacoes/nvd
- marc.infonvd
- sunsolve.sun.com/pub-cgi/retrieve.plnvd
- www.mandrakesoft.com/security/advisoriesnvd
- www.redhat.com/support/errata/RHSA-2003-028.htmlnvd
- www.redhat.com/support/errata/RHSA-2003-035.htmlnvd
- www.securityfocus.com/bid/6753nvd
News mentions
0No linked articles in our index yet.