CVE-2006-5397

Publication date 3 November 2006

Last updated 17 July 2025


Ubuntu priority

The Xinput module (modules/im/ximcp/imLcIm.c) in X.Org libX11 1.0.2 and 1.0.3 opens a file for reading twice using the same file descriptor, which causes a file descriptor leak that allows local users to read files specified by the XCOMPOSEFILE environment variable via the duplicate file descriptor.

Status

Package Ubuntu Release Status
libx11 7.04 feisty
Not affected
6.10 edgy
Not affected
6.06 LTS dapper
Not affected