Debian Security Advisory 2213-1

0
33

Debian Linux Security Advisory 2213-1 – Sebastian Krahmer discovered that the xrdb utility of x11-xserver-utils, a X server resource database utility, is not properly filtering crafted hostnames. This allows a remote attacker to execute arbitrary code with root privileges given that either remote logins via xdmcp are allowed or the attacker is able to place a rogue DHCP server into the victims network.

Source: Debian Security Advisory 2213-1