PT-2008-6887 · X.Org+2 · Libxmu6+37

Published

1970-01-01

·

Updated

2024-06-15

·

CVE-2007-6429

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions xorg-server versions prior to 1.4.1 x-window-system (affected versions not specified) libxfont1 (affected versions not specified) libxaw6 (affected versions not specified) xlibs (affected versions not specified) libxrandr2 (affected versions not specified) xlibmesa3 (affected versions not specified) libdps1 (affected versions not specified) libxtst6 (affected versions not specified) libxmu6 (affected versions not specified) libxv1 (affected versions not specified) libxtrap6 (affected versions not specified) libsm6 (affected versions not specified) libxi6 (affected versions not specified) libxp6 (affected versions not specified) xfonts-75dpi (affected versions not specified) xfonts-100dpi (affected versions not specified) xfonts-base (affected versions not specified) xfonts-scalable (affected versions not specified) xfwp (affected versions not specified) xmh (affected versions not specified) xnest (affected versions not specified) xspecs (affected versions not specified) xfs (affected versions not specified) lbxproxy (affected versions not specified) xdmx (affected versions not specified) xvfb (affected versions not specified) xlibmesa-glu (affected versions not specified) xlibmesa-dri (affected versions not specified) libxft1 (affected versions not specified) libxpm4 (affected versions not specified) libxaw7 (affected versions not specified) libxext6 (affected versions not specified) libxt6 (affected versions not specified) libx11-6 (affected versions not specified) libxmuu1 (affected versions not specified)
Description Multiple integer overflows in X.Org Xserver allow context-dependent attackers to execute arbitrary code via a GetVisualInfo request containing a 32-bit value that is improperly used to calculate an amount of memory for allocation by the EVI extension, or a request containing values related to pixmap size that are improperly used in management of shared memory by the MIT-SHM extension. The vulnerabilities can be exploited remotely.
Recommendations As a temporary workaround, consider disabling the GetVisualInfo request and the MIT-SHM extension until a patch is available. Restrict access to the X.Org Xserver to minimize the risk of exploitation. Avoid using the xorg-server package until a fixed version is available. For xorg-server versions prior to 1.4.1, update to version 1.4.1 or later. At the moment, there is no information about a newer version that contains a fix for this vulnerability for the other affected packages.

Fix

Buffer Overflow

Race Condition

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-01186
BDU:2015-01187
BDU:2015-01188
BDU:2015-01189
BDU:2015-01190
BDU:2015-01191
BDU:2015-01192
BDU:2015-01193
BDU:2015-01194
BDU:2015-01195
BDU:2015-01196
BDU:2015-01197
BDU:2015-01198
BDU:2015-01199
BDU:2015-01200
BDU:2015-01201
BDU:2015-01202
BDU:2015-01203
BDU:2015-01204
BDU:2015-01205
BDU:2015-01206
BDU:2015-01207
BDU:2015-01208
BDU:2015-01209
BDU:2015-01210
BDU:2015-01211
BDU:2015-01212
BDU:2015-01213
BDU:2015-01214
BDU:2015-01215
BDU:2015-01216
BDU:2015-01217
BDU:2015-01218
BDU:2015-01219
BDU:2015-01220
BDU:2015-01221
BDU:2015-01222
BDU:2015-01223
BDU:2015-01224
BDU:2015-01225
BDU:2015-01226
BDU:2015-01227
BDU:2015-01228
BDU:2015-01229
BDU:2015-01230
BDU:2015-01231
BDU:2015-01232
BDU:2015-01233
BDU:2015-01234
BDU:2015-01235
BDU:2015-01236
BDU:2015-01237
BDU:2015-01238
BDU:2015-01239
BDU:2015-01240
BDU:2015-01241
BDU:2015-01242
BDU:2015-01243
BDU:2015-01244
BDU:2015-01245
BDU:2015-01246
BDU:2015-01247
BDU:2015-01248
BDU:2015-01249
BDU:2015-01250
BDU:2015-01251
BDU:2015-01252
BDU:2015-01253
BDU:2015-01254
BDU:2015-01255
BDU:2015-01256
BDU:2015-01257
BDU:2015-01258
BDU:2015-01259
BDU:2015-01260
BDU:2015-01261
BDU:2015-01262
BDU:2015-01263
BDU:2015-01264
BDU:2015-01265
BDU:2015-01266
BDU:2015-01267
BDU:2015-01268
BDU:2015-01269
BDU:2015-01270
BDU:2015-01271
BDU:2015-01272
BDU:2015-01273
BDU:2015-01274
BDU:2015-01275
BDU:2015-01276
BDU:2015-01277
BDU:2015-01447
BDU:2015-01448
BDU:2015-01449
BDU:2015-01450
BDU:2015-01451
BDU:2015-09611
CVE-2007-6429
DSA-1466-2
DTSA-110-1
HPSBUX02381
OPENSUSE-SU-2024:11525-1
RHSA-2008:0029
RHSA-2008:0030
RHSA-2008:0031
RHSA-2008_0030
RHSA-2008_0031

Affected Products

Hp-Ux
Red Hat
Lbxproxy
Libdps1
Libsm6
Libx11-6
Libxaw6
Libxaw7
Libxext6
Libxfont1
Libxft1
Libxi6
Libxmu6
Libxmuu1
Libxp6
Libxpm4
Libxrandr2
Libxt6
Libxtrap6
Libxtst6
Libxv1
X-Window-System
Xdmx
Xfonts-100Dpi
Xfonts-75Dpi
Xfonts-Base
Xfonts-Scalable
Xfs
Xfwp
Xlibmesa-Dri
Xlibmesa-Glu
Xlibmesa3
Xlibs
Xmh
Xnest
Xorg-Server
Xspecs
Xvfb