First published: Wed Apr 21 2021(Updated: )
The Debian xscreensaver 5.42+dfsg1-1 package for XScreenSaver has cap_net_raw enabled for the /usr/libexec/xscreensaver/sonar file, which allows local users to gain privileges because this is arguably incompatible with the design of the Mesa 3D Graphics library dependency.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xscreensaver Project Xscreensaver | =5.42\+dfsg1-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.