Corel Linux setxconf Vulnerability
BID:1008
Info
Corel Linux setxconf Vulnerability
| Bugtraq ID: | 1008 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Feb 24 2000 12:00AM |
| Updated: | Feb 24 2000 12:00AM |
| Credit: | This vulnerability was posted to the Bugtraq mailing list by [email protected] on February 24, 2000. |
| Vulnerable: |
Corel Linux OS 1.0 |
| Not Vulnerable: | |
Discussion
Corel Linux setxconf Vulnerability
A vulnerability exists in the setxconf utility, as shipped with Corel Linux 1.0. The -T option to setxconf will run xinit, which euid root. xinit, when executed, will invoke the contents on ~/.xserverrc. A malicious user could therefore execute commands as root.
A vulnerability exists in the setxconf utility, as shipped with Corel Linux 1.0. The -T option to setxconf will run xinit, which euid root. xinit, when executed, will invoke the contents on ~/.xserverrc. A malicious user could therefore execute commands as root.
Solution / Fix
Corel Linux setxconf Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
A suitable fix is to remove the setuid bit from the /sbin/setxconf executable.
chmod -s /sbin/setxconf
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
A suitable fix is to remove the setuid bit from the /sbin/setxconf executable.
chmod -s /sbin/setxconf
References
Corel Linux setxconf Vulnerability
References:
References: