Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-4028

Опубликовано: 18 окт. 2011
Источник: redhat
CVSS2: 1.2

Описание

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4xorg-x11Will not fix
Red Hat Enterprise Linux 5xorg-x11-serverFixedRHSA-2012:030321.02.2012
Red Hat Enterprise Linux 6xorg-x11-serverFixedRHSA-2012:093919.06.2012

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=745755xorg-x11-server: File existence disclosure vulnerability

1.2 Low

CVSS2

Связанные уязвимости

ubuntu
почти 13 лет назад

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.

nvd
почти 13 лет назад

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.

debian
почти 13 лет назад

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 a ...

github
около 3 лет назад

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.

oracle-oval
больше 13 лет назад

ELSA-2012-0303: xorg-x11-server security and bug fix update (LOW)

1.2 Low

CVSS2