Integer overflow in ALLOCATE_LOCAL in the ProcXCMiscGetXIDList function in the XC-MISC extension in the X.Org X11 server (xserver) 7.1-1.1.0, and other versions before 20070403, allows remote authenticated users to execute arbitrary code via a large expression, which results in memory corruption.
Name | Vendor | Start Version | End Version |
---|---|---|---|
X11 | X.org | 7.1_1.1.0 (including) | 7.1_1.1.0 (including) |
Red Hat Enterprise Linux 2.1 | RedHat | XFree86-0:4.1.0-82.EL | * |
Red Hat Enterprise Linux 3 | RedHat | XFree86-0:4.3.0-120.EL | * |
Red Hat Enterprise Linux 4 | RedHat | xorg-x11-0:6.8.2-1.EL.13.37.7 | * |
Red Hat Enterprise Linux 5 | RedHat | xorg-x11-server-0:1.1.1-48.13.0.1.el5 | * |
Xorg-server | Ubuntu | dapper | * |
Xorg-server | Ubuntu | devel | * |
Xorg-server | Ubuntu | edgy | * |
Xorg-server | Ubuntu | feisty | * |