PT-2008-6885 · X.Org+3 · Libxaw6-Dev+86

Published

1970-01-01

·

Updated

2024-06-15

·

CVE-2007-6427

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions xorg-server versions prior to 1.4.1 libxfont1 (affected versions not specified) libxaw6 (affected versions not specified) libxaw7 (affected versions not specified) libxext6 (affected versions not specified) libxft1 (affected versions not specified) libx11-6 (affected versions not specified) libxi6 (affected versions not specified) libxp6 (affected versions not specified) libxpm4 (affected versions not specified) libxrandr2 (affected versions not specified) libxt6 (affected versions not specified) libxv1 (affected versions not specified) libxmu6 (affected versions not specified) libxmuu1 (affected versions not specified) libxtrap6 (affected versions not specified) x-window-system (affected versions not specified) x-window-system-core (affected versions not specified) x-window-system-dev (affected versions not specified) xlibs (affected versions not specified) xlibs-data (affected versions not specified) xlibs-dev (affected versions not specified) xlibs-dbg (affected versions not specified) xfwp (affected versions not specified) xfs (affected versions not specified) xmh (affected versions not specified) xnest (affected versions not specified) xspecs (affected versions not specified) xvfb (affected versions not specified) xfonts-100dpi (affected versions not specified) xfonts-100dpi-transcoded (affected versions not specified) xfonts-75dpi (affected versions not specified) xfonts-75dpi-transcoded (affected versions not specified) xfonts-base (affected versions not specified) xfonts-base-transcoded (affected versions not specified) xfonts-cyrillic (affected versions not specified) xfonts-scalable (affected versions not specified) lbxproxy (affected versions not specified) libdps1 (affected versions not specified) libdps-dev (affected versions not specified) libdps1-dbg (affected versions not specified) libsm6 (affected versions not specified) libsm6-dbg (affected versions not specified) libsm-dev (affected versions not specified) libxaw6-dbg (affected versions not specified) libxaw6-dev (affected versions not specified) libxaw7-dbg (affected versions not specified) libxaw7-dev (affected versions not specified) libxext6-dbg (affected versions not specified) libxext-dev (affected versions not specified) libxft1-dbg (affected versions not specified) libx11-dev (affected versions not specified) libx11-6-dbg (affected versions not specified) libxi6-dbg (affected versions not specified) libxi-dev (affected versions not specified) libxp6-dbg (affected versions not specified) libxp-dev (affected versions not specified) libxpm4-dbg (affected versions not specified) libxpm-dev (affected versions not specified) libxrandr2-dbg (affected versions not specified) libxrandr-dev (affected versions not specified) libxv1-dbg (affected versions not specified) libxv-dev (affected versions not specified) libxt6-dbg (affected versions not specified) libxt-dev (affected versions not specified) libxtst6 (affected versions not specified) libxtst6-dbg (affected versions not specified) libxtst-dev (affected versions not specified) libxmu-dev (affected versions not specified) libxmu6-dbg (affected versions not specified) libxmuu1-dbg (affected versions not specified) libxmuu-dev (affected versions not specified) libxtrap6-dbg (affected versions not specified) libxtrap-dev (affected versions not specified) xlibmesa3 (affected versions not specified) xlibmesa3-dbg (affected versions not specified) xlibmesa-dri (affected versions not specified) xlibmesa-dri-dbg (affected versions not specified) xlibmesa-gl (affected versions not specified) xlibmesa-gl-dbg (affected versions not specified) xlibmesa-gl-dev (affected versions not specified) xlibmesa-glu (affected versions not specified) xlibmesa-glu-dbg (affected versions not specified) xlibmesa-glu-dev (affected versions not specified) xlibosmesa4 (affected versions not specified) xlibosmesa4-dbg (affected versions not specified) xlibosmesa-dev (affected versions not specified) xdm (affected versions not specified) xdmx (affected versions not specified) xdmx-tools (affected versions not specified)
Description The XInput extension in X.Org Xserver prior to version 1.4.1 allows context-dependent attackers to execute arbitrary code via requests related to byte swapping and heap corruption within multiple functions. This vulnerability can be exploited remotely. The issue affects multiple packages in the Debian GNU/Linux operating system, including x-window-system, x-window-system-core, x-window-system-dev, xlibs, xlibs-data, xlibs-dev, xlibs-dbg, xfwp, xfs, xmh, xnest, xspecs, xvfb, xfonts-100dpi, xfonts-100dpi-transcoded, xfonts-75dpi, xfonts-75dpi-transcoded, xfonts-base, xfonts-base-transcoded, xfonts-cyrillic, xfonts-scalable, lbxproxy, libdps1, libdps-dev, libdps1-dbg, libsm6, libsm6-dbg, libsm-dev, libxaw6, libxaw6-dbg, libxaw6-dev, libxaw7, libxaw7-dbg, libxaw7-dev, libxext6, libxext6-dbg, libxext-dev, libxft1, libxft1-dbg, libx11-6, libx11-dev, libx11-6-dbg, libxi6, libxi6-dbg, libxi-dev, libxp6, libxp6-dbg, libxp-dev, libxpm4, libxpm4-dbg, libxpm-dev, libxrandr2, libxrandr2-dbg, libxrandr-dev, libxv1, libxv1-dbg, libxv-dev, libxt6, libxt6-dbg, libxt-dev, libxtst6, libxtst6-dbg, libxtst-dev, libxmu6, libxmu6-dbg, libxmu-dev, libxmuu1, libxmuu1-dbg, libxmuu-dev, libxtrap6, libxtrap6-dbg, libxtrap-dev, xlibmesa3, xlibmesa3-dbg, xlibmesa-dri, xlibmesa-dri-dbg, xlibmesa-gl, xlibmesa-gl-dbg, xlibmesa-gl-dev, xlibmesa-glu, xlibmesa-glu-dbg, xlibmesa-glu-dev, xlibosmesa4, xlibosmesa4-dbg, xlibosmesa-dev, xdm, xdmx, xdmx-tools, proxymngr, and pm-dev.
Recommendations As a temporary workaround, consider disabling the XInput extension until a patch is available. Restrict access to the vulnerable packages to minimize the risk of exploitation. Avoid using the affected packages until the issue is resolved. Update to version 1.4.1 or later of the xorg-server package. For each affected package, update to the latest version or apply the recommended patch. Disable the vulnerableFunction() function until a patch is available. Restrict access to the vulnerable module moduleX to minimize the risk of exploitation. Avoid using the parameter user id in the affected API endpoint until the issue is resolved. Apply the recommended configuration changes and workarounds to mitigate the risk of exploitation.

Fix

Buffer Overflow

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-01186
BDU:2015-01187
BDU:2015-01188
BDU:2015-01189
BDU:2015-01190
BDU:2015-01191
BDU:2015-01192
BDU:2015-01193
BDU:2015-01194
BDU:2015-01195
BDU:2015-01196
BDU:2015-01197
BDU:2015-01198
BDU:2015-01199
BDU:2015-01200
BDU:2015-01201
BDU:2015-01202
BDU:2015-01203
BDU:2015-01204
BDU:2015-01205
BDU:2015-01206
BDU:2015-01207
BDU:2015-01208
BDU:2015-01209
BDU:2015-01210
BDU:2015-01211
BDU:2015-01212
BDU:2015-01213
BDU:2015-01214
BDU:2015-01215
BDU:2015-01216
BDU:2015-01217
BDU:2015-01218
BDU:2015-01219
BDU:2015-01220
BDU:2015-01221
BDU:2015-01222
BDU:2015-01223
BDU:2015-01224
BDU:2015-01225
BDU:2015-01226
BDU:2015-01227
BDU:2015-01228
BDU:2015-01229
BDU:2015-01230
BDU:2015-01231
BDU:2015-01232
BDU:2015-01233
BDU:2015-01234
BDU:2015-01235
BDU:2015-01236
BDU:2015-01237
BDU:2015-01238
BDU:2015-01239
BDU:2015-01240
BDU:2015-01241
BDU:2015-01242
BDU:2015-01243
BDU:2015-01244
BDU:2015-01245
BDU:2015-01246
BDU:2015-01247
BDU:2015-01248
BDU:2015-01249
BDU:2015-01250
BDU:2015-01251
BDU:2015-01252
BDU:2015-01253
BDU:2015-01254
BDU:2015-01255
BDU:2015-01256
BDU:2015-01257
BDU:2015-01258
BDU:2015-01259
BDU:2015-01260
BDU:2015-01261
BDU:2015-01262
BDU:2015-01263
BDU:2015-01264
BDU:2015-01265
BDU:2015-01266
BDU:2015-01267
BDU:2015-01268
BDU:2015-01269
BDU:2015-01270
BDU:2015-01271
BDU:2015-01272
BDU:2015-01273
BDU:2015-01274
BDU:2015-01275
BDU:2015-01276
BDU:2015-01277
BDU:2015-01447
BDU:2015-01448
BDU:2015-01449
BDU:2015-01450
BDU:2015-01451
BDU:2015-09611
CVE-2007-6427
DSA-1466-2
DTSA-110-1
HPSBUX02381
OPENSUSE-SU-2024:11525-1
RHSA-2008:0029
RHSA-2008:0030
RHSA-2008:0031
RHSA-2008_0030
RHSA-2008_0031

Affected Products

Hp-Ux
Red Hat
Lbxproxy
Libdps-Dev
Libdps1
Libdps1-Dbg
Libsm-Dev
Libsm6
Libsm6-Dbg
Libx11-6
Libx11-6-Dbg
Libx11-Dev
Libxaw6
Libxaw6-Dbg
Libxaw6-Dev
Libxaw7
Libxaw7-Dbg
Libxaw7-Dev
Libxext-Dev
Libxext6
Libxext6-Dbg
Libxfont1
Libxft1
Libxft1-Dbg
Libxi-Dev
Libxi6
Libxi6-Dbg
Libxmuu-Dev
Libxmu6
Libxmu6-Dbg
Libxmuu1
Libxmuu1-Dbg
Libxpm-Dev
Libxp6
Libxp6-Dbg
Libxpm4
Libxpm4-Dbg
Libxrandr-Dev
Libxrandr2
Libxrandr2-Dbg
Libxt-Dev
Libxt6
Libxt6-Dbg
Libxtrap-Dev
Libxtrap6
Libxtrap6-Dbg
Libxtst-Dev
Libxtst6
Libxtst6-Dbg
Libxv-Dev
Libxv1
Libxv1-Dbg
X-Window-System
X-Window-System-Core
X-Window-System-Dev
Xdm
Xdmx
Xdmx-Tools
Xfonts-100Dpi
Xfonts-100Dpi-Transcoded
Xfonts-75Dpi
Xfonts-75Dpi-Transcoded
Xfonts-Base
Xfonts-Base-Transcoded
Xfonts-Cyrillic
Xfonts-Scalable
Xfs
Xfwp
Xlibmesa-Dri
Xlibmesa-Dri-Dbg
Xlibmesa-Glu
Xlibmesa-Gl-Dbg
Xlibmesa-Gl-Dev
Xlibmesa3
Xlibosmesa3-Dbg
Xlibmesa-Dev
Xlibosmesa4
Xlibosmesa4-Dbg
Xlibs
Xlibs-Data
Xlibs-Dbg
Xlibs-Dev
Xmh
Xnest
Xorg-Server
Xspecs
Xvfb