Audit uncovers major Linux flaw

By

A Department of Homeland Security (DHS) audit has uncovered a major flaw in the X Window System used by open-source users.

Vulnerability monitoring firm Secunia said today that the flaw was "moderately critical. It was caused due to a buffer size calculation error within the X Render extension triangle handling code, according to a Secunia advisory.


Secunia recommended that affected users apply an available patch for the flaw.

Coverity, a San Francisco-based company auditing open-source security for DHS, found the flaw, calling it the biggest X Window flaw found in years, according to a report by eWeek.

The flaw could be used to allow local users to execute code with root privileges, according to Secunia's report.

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

Phishing attack nets enormous npm supply chain compromise

Phishing attack nets enormous npm supply chain compromise

"VoidProxy" PhishKit targets Google and Microsoft users

"VoidProxy" PhishKit targets Google and Microsoft users

Apple adds "mercenary spyware" protection to new A19 chip

Apple adds "mercenary spyware" protection to new A19 chip

VicRoads to phase out passwords in favour of passkeys

VicRoads to phase out passwords in favour of passkeys

Log In

  |  Forgot your password?