Loading vulnerability details…
CVSS v3.1
N/A
EPSS
0.33%
Published
Jul 22, 2008
Modified
Jun 16, 2026
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
OpenSSH before 5.1 sets the SO_REUSEADDR socket option when the X11UseLocalhost configuration setting is disabled, which allows local users on some platforms to hijack the X11 forwarding port via a bind to a single IP address, as demonstrated on the HP-UX platform.
Weaknesses (CWE)
Affected Products (71)
...and 21 more
References (14)