LWN.net Logo

Local privilege escalation vulnerability in XFree86

Package(s):xf86 xfree86 CVE #(s):
Created:September 18, 2002 Updated:October 27, 2002
Description: XFree86 version 4.2.1 fixes a problem in Xlib that made it possible to execute arbitrary code in privileged clients. Other libraries are dynamically loaded by libX11.so as needed. When linking against a setuid program, arbitrary code could be loaded and executed from a pathname controlled by the user.
Alerts:
SuSE SuSE-SA:2002:032 2002-09-18
Conectiva CLA-2002:529 2002-10-03
Conectiva CLA-2002:533 2002-10-16
Gentoo xfree-20021024 2002-10-24

(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds
Powered by Rackspace Managed Hosting.