Описание
The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 4 | xorg-x11 | Will not fix | ||
Red Hat Enterprise Linux 5 | xorg-x11-server | Fixed | RHSA-2012:0303 | 21.02.2012 |
Red Hat Enterprise Linux 6 | xorg-x11-server | Fixed | RHSA-2012:0939 | 19.06.2012 |
Показывать по
Дополнительная информация
Статус:
1.2 Low
CVSS2
Связанные уязвимости
The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.
The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.
The LockServer function in os/utils.c in X.Org xserver before 1.11.2 a ...
The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.
ELSA-2012-0303: xorg-x11-server security and bug fix update (LOW)
1.2 Low
CVSS2