CVE-2001-1409: Low severity xfree86 project xfree86 x server vulnerability
Published Jun 18, 2003
·Updated
dexconf in XFree86 Xserver 4.1.0-2 creates the /dev/dri directory with insecure permissions (666), which allows local users to replace or create files in the root file system.
Affected Software
1 affected component
Xfree86 Project Xfree86 X Server=4.1.0.2
Remediation
Patch Available
Event History
Jun 18, 2003
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-1409?
CVE-2001-1409 is classified as a high-severity vulnerability due to its potential to allow local users to compromise the system.
2
How do I fix CVE-2001-1409?
To fix CVE-2001-1409, change the permissions of the /dev/dri directory to a more secure setting, such as 755.
3
Which software versions are affected by CVE-2001-1409?
CVE-2001-1409 affects the XFree86 X server version 4.1.0-2.
4
What are the risks associated with CVE-2001-1409?
The risks associated with CVE-2001-1409 include unauthorized file creation and potentially compromising the root file system by local users.
5
Is CVE-2001-1409 still a concern in modern systems?
CVE-2001-1409 is less of a concern in modern systems that do not utilize XFree86 X server 4.1.0-2, but unpatched systems remain at risk.