Vulnerability Name:

CVE-2001-1409 (CCN-12725)

Assigned:2001-08-28
Published:2001-08-28
Updated:2010-05-25
Summary:dexconf in XFree86 Xserver 4.1.0-2 creates the /dev/dri directory with insecure permissions (666), which allows local users to replace or create files in the root file system.
CVSS v3 Severity:5.1 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): None
CVSS v2 Severity:3.6 Low (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:N)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): None
3.6 Low (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:N)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): None
Vulnerability Type:CWE-Other
Vulnerability Consequences:File Manipulation
References:Source: MITRE
Type: CNA
CVE-2001-1409

Source: CCN
Type: Debian Bugs Mailing List, 2001-08-28 19:35:20 PST
Bug#110475: [PATCH] Directory mode of /dev/dri is too open

Source: CONFIRM
Type: Patch, Vendor Advisory
http://groups.google.com/groups?selm=20010829121505.A16004%40compusol.com.au

Source: CCN
Type: RHSA-2003-064
Updated XFree86 4.1.0 packages are available

Source: CCN
Type: RHSA-2003-065
XFree86 security update

Source: CCN
Type: RHSA-2003-066
Updated XFree86 packages provide security and bug fixes

Source: CCN
Type: RHSA-2003-067
Updated XFree86 packages provide security and bug fixes

Source: CCN
Type: Sun Alert ID: 55602
Sun Linux 5.0 Security Vulnerabilities in XFree86 Packages

Source: SUNALERT
Type: UNKNOWN
228529

Source: SUNALERT
Type: UNKNOWN
1017429

Source: REDHAT
Type: Patch, Vendor Advisory
RHSA-2003:067

Source: CCN
Type: BID-8032
XFree86 Dexconf Dev/Dri Directory Insecure Permissions Vulnerability

Source: CCN
Type: XFree86 Web site
XFree86

Source: XF
Type: UNKNOWN
xfree86-dexconf-insecure-permissions(12725)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:xfree86_project:xfree86_x_server:4.1.0.2:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/o:freebsd:freebsd:*:*:*:*:*:*:*:*
  • OR cpe:/o:netbsd:netbsd:*:*:*:*:*:*:*:*
  • OR cpe:/o:openbsd:openbsd:*:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:linux:7.1:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:linux:7.2:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:linux:7.3:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:linux:8.0:*:*:*:*:*:*:*
  • OR cpe:/a:sun:linux:5.0:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:2.1:*:as:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:2.1:*:es:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:2.1:*:ws:*:*:*:*:*
  • OR cpe:/o:redhat:linux_advanced_workstation:2.1:*:itanium:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    xfree86_project xfree86 x server 4.1.0.2
    freebsd freebsd *
    netbsd netbsd *
    openbsd openbsd *
    redhat linux 7.1
    redhat linux 7.2
    redhat linux 7.3
    redhat linux 8.0
    sun linux 5.0
    redhat enterprise linux 2.1
    redhat enterprise linux 2.1
    redhat enterprise linux 2.1
    redhat linux advanced workstation 2.1