The department of Homeland Security (United States) have discovered a very critical bug in X11. It allowed people to gain root access and several other problems.
But get this! You know the problems we had in WD1 class (the problems my classmates and I had in our Web Development class)? Well, here's what the problem was in X11, it was a change from this:
if (getuid() == 0 || geteuid != 0)
to this:
if (getuid() == 0 || geteuid() != 0)
Kudos to the heroes who painstakingly reinserted the missing parenthesis! Anyway, as you may guess, the problem has been already patched.
Read the full story here:
http://news.yahoo.com/s/zd/20060502/tc_zd/177195
Page 1 of 1
Serious X11 Missing Parenthesis Flaw
Share this topic:
Page 1 of 1

Help













