[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

251139

 
 

909

 
 

196159

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2013:0502-02 -- Redhat xorg-x11-apps, xorg-x11-server-utils and xorg-x11-utils

ID: oval:org.secpod.oval:def:500976Date: (C)2013-02-21   (M)2023-07-28
Class: PATCHFamily: unix




The Core X11 clients packages provide the xorg-x11-utils, xorg-x11-server-utils, and xorg-x11-apps clients that ship with the X Window System. It was found that the x11perfcomp utility included the current working directory in its PATH environment variable. Running x11perfcomp in an attacker-controlled directory would cause arbitrary code execution with the privileges of the user running x11perfcomp. Also with this update, the xorg-x11-utils and xorg-x11-server-utils packages have been upgraded to upstream version 7.5, and the xorg-x11-apps package to upstream version 7.6, which provides a number of bug fixes and enhancements over the previous versions. All users of xorg-x11-utils, xorg-x11-server-utils, and xorg-x11-apps are advised to upgrade to these updated packages, which fix these issues and add these enhancements.

Platform:
Red Hat Enterprise Linux 6
Product:
xorg-x11-server-utils
xorg-x11-utils
xorg-x11-apps
Reference:
RHSA-2013:0502-02
CVE-2011-2504
CVE    1
CVE-2011-2504
CPE    4
cpe:/o:redhat:enterprise_linux:6
cpe:/a:x.org:xorg-x11-utils
cpe:/a:x.org:xorg-x11-apps
cpe:/a:xorg-x11:xorg-x11-server-utils
...

© SecPod Technologies