← Back to browse · API

CVE-2016-1908

Severity
CRITICAL
CVSS
9.8
EPSS
0.13736
Risk score
44.01
CISA KEV
No
PoC
No
Published
2017-04-11
Modified
2026-05-29
First seen
2026-08-07
Aliases
EUVD-2016-2999, GHSA-MGWC-M57J-46W8
Products
n/a:n/a n/a
Sources
euvd EUVD-2016-2999

Description

The client in OpenSSH before 7.2 mishandles failed cookie generation for untrusted X11 forwarding and relies on the local X11 server for access-control decisions, which allows remote X11 clients to trigger a fallback and obtain trusted X11 forwarding privileges by leveraging configuration issues on this X11 server, as demonstrated by lack of the SECURITY extension on this X11 server.

References