PT-2016-7438 · X.Org+3 · Libxi+3

Tobias Stoeckmann

·

Published

2016-10-12

·

Updated

2022-09-28

·

CVE-2016-7945

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions X.org libXi versions prior to 1.7.7
Description The issue involves multiple integer overflows that can be exploited by remote X servers, leading to a denial of service. This can result in out-of-bounds memory access or an infinite loop, specifically through vectors involving length fields.
Recommendations For versions prior to 1.7.7, update to version 1.7.7 or later to resolve the issue.

Fix

DoS

Integer Overflow

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-1028
CVE-2016-7945
DLA-685-1
MGASA-2018-0011
SUSE-SU-2016:2505-1
SUSE-SU-2016:2828-1
SUSE-SU-2016:3047-1
SUSE-SU-2016:3189-1
SUSE-SU-2016_3047-1
SUSE-SU-2016_3189-1
USN-5646-1

Affected Products

Alt Linux
Suse
Ubuntu
Libxi