Missing sanitisation of untrusted input allows an authenticated user who is able to request X11 forwarding to inject commands to xauth(1) (CVE-2016-3115).
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2016-0108.json"