Skip to content

The .Xauthority utility must only permit access to authorized hosts.

An XCCDF Rule

Description

<VulnDiscussion>If unauthorized clients are permitted access to the X server, a user's X session may be compromised.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>

ID
SV-216078r959010_rule
Severity
Medium
References
Updated



Remediation - Manual Procedure

Remove unauthorized clients from the xauth configuration.

Procedure:
# xauth remove <display name>