Oval Definition:oval:com.redhat.rhsa:def:20110432
Revision Date:2011-04-11Version:639
Title:RHSA-2011:0432: xorg-x11 security update (Moderate)
Description:X.Org is an open source implementation of the X Window System. It provides the basic low-level functionality that full-fledged graphical user interfaces are designed upon.

  • A flaw was found in the X.Org X server resource database utility, xrdb. Certain variables were not properly sanitized during the launch of a user's graphical session, which could possibly allow a remote attacker to execute arbitrary code with root privileges, if they were able to make the display manager execute xrdb with a specially-crafted X client hostname. For example, by configuring the hostname on the target system via a crafted DHCP reply, or by using the X Display Manager Control Protocol (XDMCP) to connect to that system from a host that has a special DNS name. (CVE-2011-0465)

    Red Hat would like to thank Matthieu Herrb for reporting this issue. Upstream acknowledges Sebastian Krahmer of the SuSE Security Team as the original reporter.

    Users of xorg-x11 should upgrade to these updated packages, which contain a backported patch to resolve this issue. All running X.Org server instances must be restarted for this update to take effect.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2011-0465
    RHSA-2011:0432
    RHSA-2011:0432-01
    RHSA-2011:0432-01
    Platform(s):Red Hat Enterprise Linux 4
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND
  • xorg-x11 is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11 is signed with Red Hat redhatrelease2 key
  • xorg-x11-Mesa-libGL is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-Mesa-libGL is signed with Red Hat redhatrelease2 key
  • xorg-x11-Mesa-libGLU is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-Mesa-libGLU is signed with Red Hat redhatrelease2 key
  • xorg-x11-Xdmx is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-Xdmx is signed with Red Hat redhatrelease2 key
  • xorg-x11-Xnest is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-Xnest is signed with Red Hat redhatrelease2 key
  • xorg-x11-Xvfb is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-Xvfb is signed with Red Hat redhatrelease2 key
  • xorg-x11-deprecated-libs is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-deprecated-libs is signed with Red Hat redhatrelease2 key
  • xorg-x11-deprecated-libs-devel is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-deprecated-libs-devel is signed with Red Hat redhatrelease2 key
  • xorg-x11-devel is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-devel is signed with Red Hat redhatrelease2 key
  • xorg-x11-doc is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-doc is signed with Red Hat redhatrelease2 key
  • xorg-x11-font-utils is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-font-utils is signed with Red Hat redhatrelease2 key
  • xorg-x11-libs is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-libs is signed with Red Hat redhatrelease2 key
  • xorg-x11-sdk is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-sdk is signed with Red Hat redhatrelease2 key
  • xorg-x11-tools is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-tools is signed with Red Hat redhatrelease2 key
  • xorg-x11-twm is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-twm is signed with Red Hat redhatrelease2 key
  • xorg-x11-xauth is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-xauth is signed with Red Hat redhatrelease2 key
  • xorg-x11-xdm is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-xdm is signed with Red Hat redhatrelease2 key
  • xorg-x11-xfs is earlier than 0:6.8.2-1.EL.67
  • AND xorg-x11-xfs is signed with Red Hat redhatrelease2 key
  • BACK