Unrated severityNVD Advisory· Published May 22, 2009· Updated Apr 23, 2026
CVE-2009-1756
CVE-2009-1756
Description
SLiM Simple Login Manager 1.3.0 places the X authority magic cookie (mcookie) on the command line when invoking xauth from (1) app.cpp and (2) switchuser.cpp, which allows local users to access the X session by listing the process and its arguments.
Affected products
1- cpe:2.3:a:simone_rota:slim_simple_login_manager:1.3.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- bugs.debian.org/cgi-bin/bugreport.cginvdExploit
- secunia.com/advisories/35132nvdVendor Advisory
- secunia.com/advisories/38070nvdVendor Advisory
- osvdb.org/54583nvd
- www.openwall.com/lists/oss-security/2009/05/18/2nvd
- www.securityfocus.com/bid/35015nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/50611nvd
- www.redhat.com/archives/fedora-package-announce/2010-January/msg00000.htmlnvd
- www.redhat.com/archives/fedora-package-announce/2010-January/msg00009.htmlnvd
News mentions
0No linked articles in our index yet.