Vulnerability Description
X.Org and XFree86, including libX11, xdm, xf86dga, xinit, xload, xtrans, and xterm, does not check the return values for setuid and seteuid calls when attempting to drop privileges, which might allow local users to gain privileges by causing those calls to fail, such as by exceeding a ulimit.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| X.Org | Emu-Linux-X87-Xlibs | 7.0_r1 |
| X.Org | X11R6 | 6.7.0 |
| X.Org | X11R7 | 1.0 |
| X.Org | Xdm | 1.0.3 |
| X.Org | Xf86Dga | 1.0.0 |
| X.Org | Xinit | 1.0.2_r5 |
| X.Org | Xload | 1.0.0 |
| X.Org | Xorg-Server | 1.02_r5 |
| X.Org | Xterm | 214 |
References
- http://lists.freedesktop.org/archives/xorg/2006-June/016146.htmlPatch
- http://mail.gnome.org/archives/beast/2006-December/msg00025.html
- http://secunia.com/advisories/21650PatchVendor Advisory
- http://secunia.com/advisories/21660
- http://secunia.com/advisories/21693
- http://secunia.com/advisories/22332
- http://secunia.com/advisories/25032
- http://secunia.com/advisories/25059
- http://security.gentoo.org/glsa/glsa-200608-25.xmlPatchVendor Advisory
- http://security.gentoo.org/glsa/glsa-200704-22.xml
- http://www.debian.org/security/2006/dsa-1193
- http://www.kb.cert.org/vuls/id/300368US Government Resource
- http://www.mandriva.com/security/advisories?name=MDKSA-2006:160
- http://www.securityfocus.com/bid/19742
- http://www.securityfocus.com/bid/23697
FAQ
What is CVE-2006-4447?
CVE-2006-4447 is a vulnerability with a CVSS score of 7.2 (HIGH). X.Org and XFree86, including libX11, xdm, xf86dga, xinit, xload, xtrans, and xterm, does not check the return values for setuid and seteuid calls when attempting to drop privileges, which might allow ...
How severe is CVE-2006-4447?
CVE-2006-4447 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-4447?
Check the references section above for vendor advisories and patch information. Affected products include: X.Org Emu-Linux-X87-Xlibs, X.Org X11R6, X.Org X11R7, X.Org Xdm, X.Org Xf86Dga.