|
|
Subscribe / Log in / New account

XaoS: improper setuid-root execution

Package(s):xaos CVE #(s):
Created:June 9, 2003 Updated:June 11, 2003
Description: XaoS, a program for displaying fractal images, is installed setuid root on certain architectures in order to use svgalib, which requires access to the video hardware. However, it is not designed for secure setuid execution, and can be exploited to gain root privileges.
Alerts:
Debian DSA-310-1 xaos 2003-06-08

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds