CVE Vulnerabilities

CVE-2007-1003

Published: Apr 06, 2007 | Modified: Oct 16, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9 HIGH
AV:N/AC:L/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Integer overflow in ALLOCATE_LOCAL in the ProcXCMiscGetXIDList function in the XC-MISC extension in the X.Org X11 server (xserver) 7.1-1.1.0, and other versions before 20070403, allows remote authenticated users to execute arbitrary code via a large expression, which results in memory corruption.

Affected Software

Name Vendor Start Version End Version
X11 X.org 7.1_1.1.0 (including) 7.1_1.1.0 (including)
Red Hat Enterprise Linux 2.1 RedHat XFree86-0:4.1.0-82.EL *
Red Hat Enterprise Linux 3 RedHat XFree86-0:4.3.0-120.EL *
Red Hat Enterprise Linux 4 RedHat xorg-x11-0:6.8.2-1.EL.13.37.7 *
Red Hat Enterprise Linux 5 RedHat xorg-x11-server-0:1.1.1-48.13.0.1.el5 *
Xorg-server Ubuntu dapper *
Xorg-server Ubuntu devel *
Xorg-server Ubuntu edgy *
Xorg-server Ubuntu feisty *

References