GLSA Advocate
![Advocate Advocate](/images/ranks/rank-G-1-advocate.gif)
Joined: 12 May 2004 Posts: 2663
|
Posted: Mon May 19, 2014 8:26 am Post subject: [ GLSA 201405-26 ] X2Go Server: Privilege Escalation |
|
|
Gentoo Linux Security Advisory
Title: X2Go Server: Privilege Escalation (GLSA 201405-26)
Severity: high
Exploitable: local
Date: May 19, 2014
Bug(s): #497260
ID: 201405-26
Synopsis
A local privilege escalation vulnerability has been discovered in
X2Go Server.
Background
X2Go is an open source terminal server project.
Affected Packages
Package: net-misc/x2goserver
Vulnerable: < 4.0.1.12
Unaffected: >= 4.0.1.12
Architectures: All supported architectures
Description
X2Go Server is prone to a local privilege-escalation vulnerability.
Impact
A local attacker could gain escalated privileges.
Workaround
There is no known workaround at this time.
Resolution
All X2Go Server users should upgrade to the latest version: Code: | # emerge --sync
# emerge --ask --oneshot --verbose ">=net-misc/x2goserver-4.0.1.12"
|
References
CVE-2013-7383
Last edited by GLSA on Tue May 20, 2014 4:33 am; edited 1 time in total |
|