Re: [Dri-devel] XFree86 local root exploit

2004-02-12 Thread Keith Whitwell
Roland Scheidegger wrote: There's a buffer overflow in XFree86 allowing local attackers to gain root privileges. Here's the patch, ftp://ftp.xfree86.org/pub/XFree86/4.3.0/fixes/fontfile.diff the advisory http://www.idefense.com/application/poi/display?id=72&type=vulnerabilities&flashstatus=false

[Dri-devel] XFree86 local root exploit

2004-02-12 Thread Roland Scheidegger
There's a buffer overflow in XFree86 allowing local attackers to gain root privileges. Here's the patch, ftp://ftp.xfree86.org/pub/XFree86/4.3.0/fixes/fontfile.diff the advisory http://www.idefense.com/application/poi/display?id=72&type=vulnerabilities&flashstatus=false and a demo exploit also