CVE detail
CVE-2008-1293 — CVE-2008-1293
Published 2008-04-29 · Modified 2026-06-16 · Vendor ltsp · Product linux_terminal_server_project · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0118
EPSS probability
exploitation probability, 30d
65.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
ldm in Linux Terminal Server Project (LTSP) 0.99 and 2 passes the -ac option to the X server on each LTSP client, which allows remote attackers to connect to this server via TCP port 6006 (aka display :6).
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References