MDVSA-2011:076 -- Mandriva xrdbID: oval:org.secpod.oval:def:301004 | Date: (C)2012-01-07 (M)2021-09-12 |
Class: PATCH | Family: unix |
A vulnerability has been found and corrected in xrdb: xrdb.c in xrdb before 1.0.9 in X.Org X11R7.6 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a hostname obtained from a DHCP or XDMCP message . Packages for 2009.0 are provided as of the Extended Maintenance Program
Platform: |
Mandriva Linux 2010.0 |
Mandriva Linux 2010.1 |
Mandriva Linux 2009.0 |