CNCVE编号:CNCVE-20001060 CVE编号:CVE-2000-1060 安全级别:中 漏洞中文描述: XFCE 3.5.1默认的在xinitrc程序中配置以“xhost + localhost”命令绕过Xauthority访问控制机制,允许本地用户能够跟踪X Windows通信以及得到权限。 漏洞英文描述: The default configuration of XFCE 3.5.1 bypasses the Xauthority access control mechanism with an "xhost + localhost" command in the xinitrc program, which allows local users to sniff X Windows traffic and gain privileges. 漏洞参考: 系统类型:其他 漏洞类型:其他