The X.Org X wrapper (xserver-wrapper.c) in Linux does not properly verify the TTY of a user who is starting X, which allows local users to bypass intended access restrictions by associating stdin with a file that is misinterpreted as the console TTY.
Created xorg-x11-server tracking bugs for this issue: Affects: fedora-all [bug 1872641]
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2011-4613