Directory traversal vulnerability in tools/backlight_helper.c in X.Org xf86-video-intel 2.99.911 allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the interface name.
The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.
Link | Tags |
---|---|
http://osvdb.org/show/osvdb/108851 | vdb entry |
http://seclists.org/oss-sec/2014/q3/39 | mailing list |
http://lists.x.org/archives/xorg-commit/2014-July/036840.html | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/94746 | vdb entry |
http://seclists.org/oss-sec/2014/q3/138 | mailing list |