PT-2006-1274 · X.Org · X.Org
Published
2006-01-13
·
Updated
2018-10-19
·
CVE-2006-0197
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
X.Org versions 6.8.2 and earlier
Description
The issue is related to the XClientMessageEvent struct used in certain components of X.Org, which might include the X server and Xlib. The struct uses a "long" specifier for elements of the l array, resulting in inconsistent sizes on 32-bit versus 64-bit platforms. This could allow attackers to cause a denial of service, potentially leading to an application crash, and might enable other attacks.
Recommendations
For X.Org versions 6.8.2 and earlier, update to a version later than 6.8.2 to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
X.Org