PT-2013-1397 · Xfree86+2 · Xfree86+2

Josh Bressers

·

Published

2013-02-20

·

Updated

2023-02-13

·

CVE-2011-2504

CVSS v2.0

6.9

Medium

VectorAV:L/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions XFree86 x11perf versions prior to 1.5.4
Description The issue allows local users to gain privileges through unspecified Trojan horse code in the current working directory due to an untrusted search path vulnerability in x11perfcomp.
Recommendations For versions prior to 1.5.4, update to version 1.5.4 or later to resolve the issue.

Fix

Related Identifiers

CESA-2013_0502
CVE-2011-2504
RHSA-2013:0502
RHSA-2013_0502

Affected Products

Centos
Red Hat
Xfree86