CVE Vulnerabilities

CVE-2010-1166

Published: Apr 29, 2010 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.1 HIGH
AV:N/AC:H/Au:S/C:C/I:C/A:C
RedHat/V2
7.6 IMPORTANT
AV:N/AC:H/Au:N/C:C/I:C/A:C
RedHat/V3
Ubuntu
MEDIUM

The fbComposite function in fbpict.c in the Render extension in the X server in X.Org X11R7.1 allows remote authenticated users to cause a denial of service (memory corruption and daemon crash) or possibly execute arbitrary code via a crafted request, related to an incorrect macro definition.

Affected Software

Name Vendor Start Version End Version
X.org X 7.1 (including) 7.1 (including)
Red Hat Enterprise Linux 5 RedHat xorg-x11-server-0:1.1.1-48.76.el5_5.1 *
Xorg-server Ubuntu dapper *
Xorg-server Ubuntu hardy *
Xorg-server Ubuntu jaunty *
Xorg-server Ubuntu karmic *
Xorg-server Ubuntu upstream *

References