Bugtraq mailing list archives

Re: TOG and xterm problem


From: dawes () RF900 PHYSICS USYD EDU AU (David Dawes)
Date: Wed, 6 May 1998 23:02:56 +1000


On Mon, May 04, 1998 at 10:04:02AM -0700, System Administrator wrote:
History records that Pavel Kankovsky wrote:
Believe or not, it took me 10 minutes to grep the appropriate parts of
X11R6.3 sources, following the clues mentioned in the CERT advisory, and
find the bugs--at least some of them.

xc/programs/xterm/charproc.c:
xc/programs/xterm/charproc.c:
xc/lib/Xaw/XawIm.c:


Quick question:  Is this bug present in nxterm as well, or just xterm?

If nxterm uses an X11R6-based version of Xaw it is vulnerable at very
least to the Xaw problem if it is installed setuid-root.

David



Current thread: