Oval Definition:oval:org.mitre.oval:def:7999
Revision Date:2014-06-23Version:18
Title:DSA-1526 xwine -- several vulnerabilities
Description:Steve Kemp from the Debian Security Audit project discovered several local vulnerabilities in xwine, a graphical user interface for the WINE emulator. The Common Vulnerabilities and Exposures project identifies the following problems: The xwine command makes unsafe use of local temporary files when printing. This could allow the removal of arbitrary files belonging to users who invoke the program. The xwine command changes the permissions of the global WINE configuration file such that it is world-writable. This could allow local users to edit it such that arbitrary commands could be executed whenever any local user executed a program under WINE.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2008-0930
CVE-2008-0931
DSA-1526
Platform(s):Debian GNU/Linux 4.0
Product(s):xwine
Definition Synopsis
  • Debian GNU/Linux 4.0 is installed.
  • AND Supported architectures section
  • Installed architecture is s390
  • OR Installed architecture is amd64
  • OR Installed architecture is sparc
  • OR Installed architecture is arm
  • OR Installed architecture is i386
  • OR Installed architecture is ia64
  • OR Installed architecture is alpha
  • OR Installed architecture is powerpc
  • OR Installed architecture is hppa
  • AND xwine is earlier than 1.0.1-1etch1
  • BACK