Mandrake Linux Security Advisory : vnc (MDKSA-2003:022)
High Nessus Plugin ID 14007
SynopsisThe remote Mandrake Linux host is missing one or more security updates.
DescriptionA vulnerability was discovered in the VNC server script that generates an X cookie, used by X authentication. The script generated a cookie that was not strong enough and allow an attacker to more easily guess the authentication cookie, thus obtaining unauthorized access to the VNC server.
SolutionUpdate the affected packages.