OpenSSH Vulnerability in Untrusted X11 Forwarding by OpenSSH
CVE-2016-1908
9.8CRITICAL
What is CVE-2016-1908?
OpenSSH versions prior to 7.2 are susceptible to a vulnerability that arises from improper handling of cookies during untrusted X11 forwarding. This flaw allows remote X11 clients to trigger a fallback mechanism, thereby gaining unauthorized trusted X11 forwarding privileges. The vulnerability is particularly concerning as it depends on local X11 server configurations, creating potential exposure for systems that lack the SECURITY extension or have misconfigured access controls.