CVE-2009-1756

Source
https://cve.org/CVERecord?id=CVE-2009-1756
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2009-1756.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2009-1756
Downstream
Withdrawn
2026-01-27T04:09:48.234780Z
Published
2009-05-22T11:52:40Z
Modified
2026-01-27T04:09:48.234780Z
Summary
[none]
Details

SLiM Simple Login Manager 1.3.0 places the X authority magic cookie (mcookie) on the command line when invoking xauth from (1) app.cpp and (2) switchuser.cpp, which allows local users to access the X session by listing the process and its arguments.

References

Affected packages