Red Hat Bugzilla – Bug 115569
Multiple font related vulnerabilities (CAN-2004-0083 CAN-2004-0084 CAN-2004-0106)
Last modified: 2007-11-30 17:10:36 EST
Multiple font related issues where discovered in XFree86, one of which
makes it possible for local users to gain root by creating a carefully
crafted font.alias file.
Thank you for reporting this security issue to us.
Red Hat has been been working in conjunction with XFree86.org and
other Linux distribution vendors and members of the security
community to resolve these issues since they were discovered by
iDefense just over a week ago. We have released XFree86 updates
for the problems outlined in CAN-2004-0083, CAN-2004-0084,
CAN-2004-0106 for all currently supported Red Hat OS products.
Users of Fedora Core 1 can now update to XFree86 4.3.0-55 to
ensure they are protected from these vulnerabilities.
*** This bug has been marked as a duplicate of 114905 ***
Changed to 'CLOSED' state since 'RESOLVED' has been deprecated.