CVE Vulnerabilities

CVE-2006-6102

Published: Dec 31, 2006 | Modified: Oct 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Integer overflow in the ProcDbeGetVisualInfo function in the DBE extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and XFree86 X server, allows local users to execute arbitrary code via a crafted X protocol request that triggers memory corruption during processing of unspecified data structures.

Affected Software

Name Vendor Start Version End Version
X.org X.org 6.8.2 (including) 6.8.2 (including)
X.org X.org 6.9.0 (including) 6.9.0 (including)
X.org X.org 7.0 (including) 7.0 (including)
X.org X.org 7.1 (including) 7.1 (including)
Xfree86_x_server Xfree86_project * *
Red Hat Enterprise Linux 2.1 RedHat XFree86-0:4.1.0-78.EL *
Red Hat Enterprise Linux 3 RedHat XFree86-0:4.3.0-115.EL *
Red Hat Enterprise Linux 4 RedHat xorg-x11-0:6.8.2-1.EL.13.37.5 *
Xorg-server Ubuntu dapper *
Xorg-server Ubuntu devel *
Xorg-server Ubuntu edgy *
Xorg-server Ubuntu feisty *

References