CVE-2011-4613
Publication date 15 December 2011
Last updated 24 July 2024
Ubuntu priority
The X.Org X wrapper (xserver-wrapper.c) in Debian GNU/Linux and Ubuntu Linux does not properly verify the TTY of a user who is starting X, which allows local users to bypass intended access restrictions by associating stdin with a file that is misinterpreted as the console TTY.
Status
Package | Ubuntu Release | Status |
---|---|---|
xorg | 11.10 oneiric |
Fixed 1:7.6+7ubuntu7.1
|
11.04 natty |
Fixed 1:7.6+4ubuntu3.2
|
|
10.10 maverick |
Fixed 1:7.5+6ubuntu3.1
|
|
10.04 LTS lucid |
Fixed 1:7.5+5ubuntu1.1
|
|
8.04 LTS hardy | Ignored end of life |
Notes
References
Related Ubuntu Security Notices (USN)
- USN-1349-1
- X.Org vulnerability
- 26 January 2012