XFree86 XLOCALEDIR Buffer Overflow Variant Vulnerability
BID:8682
Info
XFree86 XLOCALEDIR Buffer Overflow Variant Vulnerability
| Bugtraq ID: | 8682 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 23 2003 12:00AM |
| Updated: | Sep 23 2003 12:00AM |
| Credit: | Discovery is credited to b0f www.b0f.net <[email protected]>. |
| Vulnerable: |
XFree86 X11R6 4.3 .0 |
| Not Vulnerable: | |
Discussion
XFree86 XLOCALEDIR Buffer Overflow Variant Vulnerability
XFree86 utilities may be prone to a locally exploitable vulnerability due to insufficient bounds checking of data supplied via the XLOCALEDIR environment variable. This is a variant of the issue described in BID 7002, but is reported to affect XFree86 4.3.0 and the buffer required to trigger the condition may also vary. This poses a security risk with utilities that are setuid/setgid. However, it is possible that some utilities may drop privileges before exploitation can occur. It has not been established that this issue may be exploited to gain elevated privileges.
XFree86 utilities may be prone to a locally exploitable vulnerability due to insufficient bounds checking of data supplied via the XLOCALEDIR environment variable. This is a variant of the issue described in BID 7002, but is reported to affect XFree86 4.3.0 and the buffer required to trigger the condition may also vary. This poses a security risk with utilities that are setuid/setgid. However, it is possible that some utilities may drop privileges before exploitation can occur. It has not been established that this issue may be exploited to gain elevated privileges.
Exploit / POC
XFree86 XLOCALEDIR Buffer Overflow Variant Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
XFree86 XLOCALEDIR Buffer Overflow Variant Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
XFree86 XLOCALEDIR Buffer Overflow Variant Vulnerability
References:
References: