diff options
author | lesi <lesi@FreeBSD.org> | 2006-03-22 01:06:39 +0800 |
---|---|---|
committer | lesi <lesi@FreeBSD.org> | 2006-03-22 01:06:39 +0800 |
commit | fea7d91cc5f9d550710c77d0fd665813bb8fec12 (patch) | |
tree | 19df17804571f10ac2dada5907b7e9fd4ff77b5b /x11-servers | |
parent | 63868019dfc1471e3349c22f391fa944dc99219f (diff) | |
download | freebsd-ports-graphics-fea7d91cc5f9d550710c77d0fd665813bb8fec12.tar.gz freebsd-ports-graphics-fea7d91cc5f9d550710c77d0fd665813bb8fec12.tar.zst freebsd-ports-graphics-fea7d91cc5f9d550710c77d0fd665813bb8fec12.zip |
Add patch from X.Org, fixing privilege escalation.
Security: http://www.vuxml.org/61534682-b8f4-11da-8e62-000e0c33c2dc
Security: CVE-2006-0745
Diffstat (limited to 'x11-servers')
-rw-r--r-- | x11-servers/xorg-server/Makefile | 1 | ||||
-rw-r--r-- | x11-servers/xorg-server/files/patch-CVE-2006-0745 | 20 |
2 files changed, 21 insertions, 0 deletions
diff --git a/x11-servers/xorg-server/Makefile b/x11-servers/xorg-server/Makefile index be20706fa6c..f8e6b508990 100644 --- a/x11-servers/xorg-server/Makefile +++ b/x11-servers/xorg-server/Makefile @@ -7,6 +7,7 @@ PORTNAME= xorg-server PORTVERSION= 6.9.0 +PORTREVISION= 1 CATEGORIES= x11-servers MASTER_SITES= ${MASTER_SITE_XORG} MASTER_SITE_SUBDIR= X11R${PORTVERSION}/src diff --git a/x11-servers/xorg-server/files/patch-CVE-2006-0745 b/x11-servers/xorg-server/files/patch-CVE-2006-0745 new file mode 100644 index 00000000000..afb7d4de763 --- /dev/null +++ b/x11-servers/xorg-server/files/patch-CVE-2006-0745 @@ -0,0 +1,20 @@ +--- programs/Xserver/hw/xfree86/common/xf86Init.c.orig 2006-03-17 23:30:10.000000000 +0200 ++++ programs/Xserver/hw/xfree86/common/xf86Init.c 2006-03-17 23:29:35.000000000 +0200 +@@ -1376,7 +1376,7 @@ + } + + /* First the options that are only allowed for root */ +- if (getuid() == 0 || geteuid != 0) ++ if (getuid() == 0 || geteuid() != 0) + { + if (!strcmp(argv[i], "-modulepath")) + { +@@ -1679,7 +1679,7 @@ + } + if (!strcmp(argv[i], "-configure")) + { +- if (getuid() != 0 && geteuid == 0) { ++ if (getuid() != 0 && geteuid() == 0) { + ErrorF("The '-configure' option can only be used by root.\n"); + exit(1); + } |