Audit uncovers major Linux flaw

By

A Department of Homeland Security (DHS) audit has uncovered a major flaw in the X Window System used by open-source users.

Vulnerability monitoring firm Secunia said today that the flaw was "moderately critical. It was caused due to a buffer size calculation error within the X Render extension triangle handling code, according to a Secunia advisory.


Secunia recommended that affected users apply an available patch for the flaw.

Coverity, a San Francisco-based company auditing open-source security for DHS, found the flaw, calling it the biggest X Window flaw found in years, according to a report by eWeek.

The flaw could be used to allow local users to execute code with root privileges, according to Secunia's report.

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

Microsoft knew of SharePoint security flaw in May, initial patch ineffective

Microsoft knew of SharePoint security flaw in May, initial patch ineffective

"PoisonSeed" attack does not bypass hardware MFA

"PoisonSeed" attack does not bypass hardware MFA

Allianz Life says majority of US customers' data stolen in hack

Allianz Life says majority of US customers' data stolen in hack

NT gov agency targeted in alleged $3.5m BEC scam

NT gov agency targeted in alleged $3.5m BEC scam

Log In

  |  Forgot your password?