CVE Vulnerabilities

CVE-2007-1003

Published: Apr 06, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9 HIGH
AV:N/AC:L/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Integer overflow in ALLOCATE_LOCAL in the ProcXCMiscGetXIDList function in the XC-MISC extension in the X.Org X11 server (xserver) 7.1-1.1.0, and other versions before 20070403, allows remote authenticated users to execute arbitrary code via a large expression, which results in memory corruption.

Affected Software

NameVendorStart VersionEnd Version
X11X.org7.1_1.1.0 (including)7.1_1.1.0 (including)
Red Hat Enterprise Linux 2.1RedHatXFree86-0:4.1.0-82.EL*
Red Hat Enterprise Linux 3RedHatXFree86-0:4.3.0-120.EL*
Red Hat Enterprise Linux 4RedHatxorg-x11-0:6.8.2-1.EL.13.37.7*
Red Hat Enterprise Linux 5RedHatxorg-x11-server-0:1.1.1-48.13.0.1.el5*
Xorg-serverUbuntudapper*
Xorg-serverUbuntudevel*
Xorg-serverUbuntuedgy*
Xorg-serverUbuntufeisty*

References