Unrated severityNVD Advisory· Published Feb 5, 2014· Updated Apr 29, 2026
CVE-2011-4613
CVE-2011-4613
Description
The X.Org X wrapper (xserver-wrapper.c) in Debian GNU/Linux and Ubuntu Linux does not properly verify the TTY of a user who is starting X, which allows local users to bypass intended access restrictions by associating stdin with a file that is misinterpreted as the console TTY.
Affected products
7cpe:2.3:o:canonical:ubuntu_linux:10.04:-:lts:*:*:*:*:*+ 3 more
- cpe:2.3:o:canonical:ubuntu_linux:10.04:-:lts:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:10.10:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:11.04:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:11.10:*:*:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:*:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- bugs.debian.org/cgi-bin/bugreport.cginvdVendor Advisory
- www.debian.org/security/2011/dsa-2364nvdVendor Advisory
- www.ubuntu.com/usn/USN-1349-1nvdVendor Advisory
News mentions
0No linked articles in our index yet.