First published: Tue Jul 17 2001(Updated: )
xman allows local users to gain privileges by modifying the MANPATH to point to a man page whose filename contains shell metacharacters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
XFree86 X Server | =3.3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2001-1179 is classified as high due to its potential for privilege escalation.
To fix CVE-2001-1179, ensure that the MANPATH variable is properly sanitized to prevent the inclusion of shell metacharacters.
Local users of the XFree86 X Server version 3.3.2 are affected by CVE-2001-1179.
Systems running XFree86 X Server version 3.3.2 are vulnerable to CVE-2001-1179.
CVE-2001-1179 enables local users to perform privilege escalation attacks.