[6684] in bugtraq
Re: TOG and xterm problem
daemon@ATHENA.MIT.EDU (David Dawes)
Wed May 6 14:24:29 1998
Date: Wed, 6 May 1998 23:02:56 +1000
Reply-To: David Dawes <dawes@RF900.PHYSICS.USYD.EDU.AU>
From: David Dawes <dawes@RF900.PHYSICS.USYD.EDU.AU>
X-To: System Administrator <root@ATRIUM.CARDIMA.COM>
To: BUGTRAQ@NETSPACE.ORG
In-Reply-To: <199805041704.KAA20093@atrium.cardima.com>; from System
Administrator on Mon, May 04, 1998 at 10:04:02AM -0700
On Mon, May 04, 1998 at 10:04:02AM -0700, System Administrator wrote:
>History records that Pavel Kankovsky wrote:
>> Believe or not, it took me 10 minutes to grep the appropriate parts of
>> X11R6.3 sources, following the clues mentioned in the CERT advisory, and
>> find the bugs--at least some of them.
>>
>> xc/programs/xterm/charproc.c:
>> xc/programs/xterm/charproc.c:
>> xc/lib/Xaw/XawIm.c:
>
>
>Quick question: Is this bug present in nxterm as well, or just xterm?
If nxterm uses an X11R6-based version of Xaw it is vulnerable at very
least to the Xaw problem if it is installed setuid-root.
David