Fwd: The importance of mutual authentication: Local Privilege Escalation in X11

Keith Packard keithp at keithp.com
Sun Nov 29 19:42:28 UTC 2020


Roberto Ragusa <mail at robertoragusa.it> writes:

> Wouldn't this make it impossible to run processes under different users
> by using xauth and export DISPLAY=:0 ?

As long as the other user has access to the specified path, processes
will be able to connect to the server.

-- 
-keith
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 832 bytes
Desc: not available
URL: <https://lists.x.org/archives/xorg-devel/attachments/20201129/78b3a906/attachment.sig>


More information about the xorg-devel mailing list