Family: Debian Local Security Checks --> Category: infos
[DSA484] DSA-484-1 xonix Vulnerability Scan
Vulnerability Scan Summary
Detailed Explanation for this Vulnerability Test
Steve Kemp discovered a vulnerability in xonix, a game, where an
external program was invoked while retaining setgid rights. A
local attacker could exploit this vulnerability to gain gid "games".
For the current stable distribution (woody) this problem will be fixed
in version 1.4-19woody1.
For the unstable distribution (sid), this problem will be fixed soon.
We recommend that you update your xonix package.
Solution : http://www.debian.org/security/2004/dsa-484
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.