Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2006-7236
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-7236

Description:
The default configuration of xterm on Debian GNU/Linux sid and possibly Ubuntu enables the allowWindowOps resource, which allows user-assisted attackers to execute arbitrary code or have unspecified other impact via escape sequences.

CVE Status:
Candidate

References:

UBUNTU
  http://www.ubuntulinux.org/support/documentation/usn/usn-703-1

SAID
  Secunia Advisory: SA33388

CONFIRM
  http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=510030
  http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=384593


Return to the previous page.