Maurizio Galli's avatar

Maurizio Galli

mauriziogalli

  • SUSE Maintenance Engineer
  • openSUSE Board Member
  • Xfce Maintainer at openSUSE
  • Packager

Member of the groups
Involved Projects and Packages

The X server had two security issues and one bug that is fixed by this update.

CVE-2011-4028: It is possible for a local attacker to deduce if a file exists or not by exploiting the way that Xorg creates its lock files.

CVE-2011-4029: It is possible for a non-root local user to set the read permission for all users on any file or directory.

openSUSE Build Service is sponsored by