x2goserver: code execution
Package(s): | x2goserver | CVE #(s): | CVE-2013-4376 | ||||||||||||||||||||
Created: | October 28, 2013 | Updated: | March 18, 2014 | ||||||||||||||||||||
Description: | From the Gentoo advisory:
A vulnerability in the setgid wrapper x2gosqlitewrapper.c does not hardcode an internal path to x2gosqlitewrapper.pl, allowing a remote attacker to change that path. A remote attacker may be able to execute arbitrary code with the privileges of the user running the server process. | ||||||||||||||||||||||
Alerts: |
|