Alerts This Week
Warning Icon 1 535
Alerts This Week
Warning Icon 1 535

Gentoo: GLSA-202110-12 Normal: LibXYZ Code Injection Vulnerability

gentoo
Calendar Grey July 25, 2007
Dist Gentoo Esm H88
The Gentoo GLSA 202208-09 addresses a critical vulnerability concerning the network manager, which could lead to privilege escalation due to improper permission settings.
A vulnerability has been discovered in NVClock, allowing for the execution of arbitrary code.

Summary

Gentoo Linux Security Advisory GLSA 200707-08 https://security.gentoo.org/ Severity: Normal Title: NVClock: Insecure file usage Date: July 24, 2007 Bugs: #184071 ID: 200707-08

Synopsis ======= A vulnerability has been discovered in NVClock, allowing for the execution of arbitrary code.
Background ========= NVClock is an utility for changing NVidia graphic chipsets internal frequency.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 media-video/nvclock < 0.7-r2 >= 0.7-r2
========== Tavis Ormandy of the Gentoo Linux Security Team discovered that NVClock makes usage of an insecure temporary file in the /tmp directory.
Impact ===== A local attacker could create a...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns


Warning: Undefined array key "advisory_info" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/4047290_4c9dbbdde36eef04251a4ced7eac4df9 on line 11

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here