PT-2013-1133 · X.Org+1 · X.Org Libfs+3

Ilja Van Sprundel

·

Published

2013-06-15

·

Updated

2024-06-15

·

CVE-2013-1996

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions X.org libFS version 1.0.4 and earlier xorg-server versions prior to 1.14.3-r2 libfs (affected versions not specified)
Description The issue allows for a buffer overflow via vectors related to an unexpected sign extension in the FSOpenServer function, potentially leading to allocation of insufficient memory. Multiple vulnerabilities in the xorg-server and libfs packages can be exploited remotely, leading to a disruption of confidentiality, integrity, and availability of protected information.
Recommendations For X.org libFS version 1.0.4 and earlier, update to a version later than 1.0.4. For xorg-server versions prior to 1.14.3-r2, update to version 1.14.3-r2 or later. For libfs, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-04030
BDU:2015-09727
CVE-2013-1996
DSA-2687-1
MGASA-2013-0186
OPENSUSE-SU-2024:10068-1
SUSE-SU-2015:0674-1

Affected Products

Suse
X.Org Libfs
Libfs
Xorg-Server