Personal tools
     DOCUMENTATION

Advisories:rPSA-2007-0187

From rPath Wiki

Jump to: navigation, search

rPath Security Advisory 2007-0187-1

Published: 2007-09-14

Products

  • rPath Linux 1

Rating

Major

Exposure Level Classification

Local Root Deterministic Privilege Escalation

Updated Versions

  • xorg-x11=conary.rpath.com@rpl:1/6.8.2-30.10-1
  • xorg-x11-fonts=conary.rpath.com@rpl:1/6.8.2-30.10-1
  • xorg-x11-tools=conary.rpath.com@rpl:1/6.8.2-30.10-1
  • xorg-x11-xfs=conary.rpath.com@rpl:1/6.8.2-30.10-1

rPath Issue Tracking System

References

Description

Previous versions of the xorg-x11 package are vulnerable to a Privilege
Escalation attack in which a local user may exploit a buffer overflow in
the X server's Composite extension to execute arbitrary code with
elevated privileges.
Additionally, the Xau and Xdmcp libraries are now provided by the
xorg-x11 package.

Copyright 2007 rPath, Inc. This file is distributed under the terms of the MIT License. A copy is available at http://www.rpath.com/permanent/mit-license.html