PT-2007-7527 · X.Org+2 · Xorg-X11-Mesa-Devel-Static+9

Published

1970-01-01

·

Updated

2020-11-20

·

CVE-2007-4990

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions xfs versions prior to 1.0.5 xorg-x11-Mesa-devel (affected versions not specified) xorg-x11-Mesa-devel-32bit (affected versions not specified) xorg-x11-Mesa (affected versions not specified) xorg-x11-Mesa-32bit (affected versions not specified) xorg-x11-driver-options (affected versions not specified) xorg-x11-Xprt (affected versions not specified) xorg-x11-Mesa-devel-static (affected versions not specified)
Description The issue involves multiple vulnerabilities in various packages of the xorg-x11 and xfs software, which can lead to disruption of confidentiality, integrity, and availability of protected information. Exploitation of these vulnerabilities can be carried out remotely. Specifically, the swap char2b function in X.Org X Font Server (xfs) before version 1.0.5 allows context-dependent attackers to execute arbitrary code via crafted size values in QueryXBitmaps and QueryXExtents protocol requests, triggering heap corruption.
Recommendations For xfs versions prior to 1.0.5, update to version 1.0.5 or later. For xorg-x11-Mesa-devel, consider disabling vulnerable functions until a patch is available. For xorg-x11-Mesa-devel-32bit, restrict access to vulnerable modules to minimize the risk of exploitation. For xorg-x11-Mesa, avoid using vulnerable parameters in affected API endpoints until the issue is resolved. For xorg-x11-Mesa-32bit, consider temporarily disabling the use of vulnerable components as a quick mitigation measure. For xorg-x11-driver-options, restrict access to vulnerable modules to minimize the risk of exploitation. For xorg-x11-Xprt, consider disabling vulnerable functions until a patch is available. For xorg-x11-Mesa-devel-static, avoid using vulnerable parameters in affected API endpoints until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability for some of the affected software.

Fix

Buffer Overflow

Link Following

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-04622
BDU:2015-04623
BDU:2015-04624
BDU:2015-04625
BDU:2015-04626
BDU:2015-04627
BDU:2015-04978
BDU:2015-04979
BDU:2015-04980
BDU:2015-04981
BDU:2015-04982
BDU:2015-04983
BDU:2015-04984
BDU:2015-09581
CVE-2007-4990
DSA-1385-1
HPSBUX02303
RHSA-2008:0029
RHSA-2008:0030
RHSA-2008_0030

Affected Products

Hp-Ux
Red Hat
Xfs
Xorg-X11-Mesa
Xorg-X11-Mesa-32Bit
Xorg-X11-Mesa-Devel
Xorg-X11-Mesa-Devel-32Bit
Xorg-X11-Mesa-Devel-Static
Xorg-X11-Xprt
Xorg-X11-Driver-Options