VYPR
Unrated severityNVD Advisory· Published Feb 19, 2003· Updated Jun 16, 2026

CVE-2002-1160

CVE-2002-1160

Description

The default configuration of the pam_xauth module forwards MIT-Magic-Cookies to new X sessions, which could allow local users to gain root privileges by stealing the cookies from a temporary .xauth file, which is created with the original user's credentials after root uses su.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Red Hat/Linux4 versions
    cpe:2.3:o:redhat:linux:7.1:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:o:redhat:linux:7.1:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:7.2:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:7.3:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:8.0:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

9

News mentions

0

No linked articles in our index yet.