Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 492
Alerts This Week
Warning Icon 1 492

Debian: 649-1 Critical: xtrlock Buffer Overflow Attack Risk

debian
Calendar Grey January 20, 2005
Scroller Debian
Patch released for xtrlock buffer overflow flaw in Debian. Critical upgrade to bolster authentication protections.
A buffer overflow has been discovered in xtrlock, a minimal X display lock program which can be exploited by a malicious local attacker to crash the lock program and take over th...

Summary


For the unstable distribution (sid) this problem has been fixed in
version 2.0-9.

We recommend that you upgrade your xtrlock package.


Upgrade Instructions
- --------------------wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 3.0 alias woody

Size/MD5 checksum: 500 d39ea1ae4ee66338786d018406065022
Size/MD5 checksum: 6977 6e6cfc0627bb74bd5014b550c2ea7a5f

Alpha architecture:

Size/MD5 checksum: 9604 d05e56b7856e770b1b43daaf43a0dc3d

ARM architecture:

Size/MD5 checksum: 8604 f0d46d569f47ecb8a138c9f91be6cdc6

Intel IA-32 architecture:

...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.