Debian Security Advisory

DLA-935-1 lxterminal -- LTS security update

Date Reported:
10 May 2017
Affected Packages:
lxterminal
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2016-10369.
More information:

It was discovered that there was a local denial of service vulnerability in lxterminal, the terminal emulator for the LXDE desktop environment.

This was caused by an insecure use of temporary files for a socket file.

For Debian 7 Wheezy, this issue has been fixed in lxterminal version 0.1.11-4+deb7u1.

We recommend that you upgrade your lxterminal packages.