DEBIAN-CVE-2006-4447

Source
https://security-tracker.debian.org/tracker/CVE-2006-4447
Import Source
https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2006-4447.json
JSON Data
https://api.osv.dev/v1/vulns/DEBIAN-CVE-2006-4447
Upstream
Published
2006-08-30T01:04:00Z
Modified
2025-09-30T05:02:43.491674Z
Summary
[none]
Details

X.Org and XFree86, including libX11, xdm, xf86dga, xinit, xload, xtrans, and xterm, does not check the return values for setuid and seteuid calls when attempting to drop privileges, which might allow local users to gain privileges by causing those calls to fail, such as by exceeding a ulimit.

References

Affected packages

Debian:11

libx11

Package

Name
libx11
Purl
pkg:deb/debian/libx11?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:1.0.0-7

Ecosystem specific

{
    "urgency": "unimportant"
}

xdm

Package

Name
xdm
Purl
pkg:deb/debian/xdm?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.0.5-1

Ecosystem specific

{
    "urgency": "unimportant"
}

xorg-server

Package

Name
xorg-server
Purl
pkg:deb/debian/xorg-server?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.0.2-9

Ecosystem specific

{
    "urgency": "low"
}

xterm

Package

Name
xterm
Purl
pkg:deb/debian/xterm?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

Other

366-1
366-1+deb11u1
367-1
368-1
368-2
369-1
370-1
370-2
371-1
372-1
373-1
373-2
374-1
375-1
376-1
377-1
378-1
379-1
380-1
381-1
382-1
382-2
383-1
384-1
385-1
386-1
387-1
388-1
389-1
390-1
391-1
392-1
393-1
394-1
395-1
396-1
397-1
398-1
399-1
401-1
402-1

Ecosystem specific

{
    "urgency": "unimportant"
}

xtrans

Package

Name
xtrans
Purl
pkg:deb/debian/xtrans?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.0.0-6

Ecosystem specific

{
    "urgency": "unimportant"
}

Debian:12

libx11

Package

Name
libx11
Purl
pkg:deb/debian/libx11?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:1.0.0-7

Ecosystem specific

{
    "urgency": "unimportant"
}

xdm

Package

Name
xdm
Purl
pkg:deb/debian/xdm?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.0.5-1

Ecosystem specific

{
    "urgency": "unimportant"
}

xorg-server

Package

Name
xorg-server
Purl
pkg:deb/debian/xorg-server?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.0.2-9

Ecosystem specific

{
    "urgency": "low"
}

xterm

Package

Name
xterm
Purl
pkg:deb/debian/xterm?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

Other

379-1
380-1
381-1
382-1
382-2
383-1
384-1
385-1
386-1
387-1
388-1
389-1
390-1
391-1
392-1
393-1
394-1
395-1
396-1
397-1
398-1
399-1
401-1
402-1

Ecosystem specific

{
    "urgency": "unimportant"
}

xtrans

Package

Name
xtrans
Purl
pkg:deb/debian/xtrans?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.0.0-6

Ecosystem specific

{
    "urgency": "unimportant"
}

Debian:13

libx11

Package

Name
libx11
Purl
pkg:deb/debian/libx11?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:1.0.0-7

Ecosystem specific

{
    "urgency": "unimportant"
}

xdm

Package

Name
xdm
Purl
pkg:deb/debian/xdm?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.0.5-1

Ecosystem specific

{
    "urgency": "unimportant"
}

xorg-server

Package

Name
xorg-server
Purl
pkg:deb/debian/xorg-server?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.0.2-9

Ecosystem specific

{
    "urgency": "low"
}

xterm

Package

Name
xterm
Purl
pkg:deb/debian/xterm?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

Other

398-1
399-1
401-1
402-1

Ecosystem specific

{
    "urgency": "unimportant"
}

xtrans

Package

Name
xtrans
Purl
pkg:deb/debian/xtrans?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.0.0-6

Ecosystem specific

{
    "urgency": "unimportant"
}

Debian:14

libx11

Package

Name
libx11
Purl
pkg:deb/debian/libx11?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:1.0.0-7

Ecosystem specific

{
    "urgency": "unimportant"
}

xdm

Package

Name
xdm
Purl
pkg:deb/debian/xdm?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.0.5-1

Ecosystem specific

{
    "urgency": "unimportant"
}

xorg-server

Package

Name
xorg-server
Purl
pkg:deb/debian/xorg-server?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.0.2-9

Ecosystem specific

{
    "urgency": "low"
}

xterm

Package

Name
xterm
Purl
pkg:deb/debian/xterm?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

Other

398-1
399-1
401-1
402-1

Ecosystem specific

{
    "urgency": "unimportant"
}

xtrans

Package

Name
xtrans
Purl
pkg:deb/debian/xtrans?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.0.0-6

Ecosystem specific

{
    "urgency": "unimportant"
}