CVE-2007-6429
Publication date 18 January 2008
Last updated 24 July 2024
Ubuntu priority
Multiple integer overflows in X.Org Xserver before 1.4.1 allow context-dependent attackers to execute arbitrary code via (1) a GetVisualInfo request containing a 32-bit value that is improperly used to calculate an amount of memory for allocation by the EVI extension, or (2) a request containing values related to pixmap size that are improperly used in management of shared memory by the MIT-SHM extension.
References
Related Ubuntu Security Notices (USN)
- USN-571-1
- X.org vulnerabilities
- 18 January 2008
Other references
- https://bugs.freedesktop.org/attachment.cgi?id=13300 (testcase for 13519)
- https://bugs.freedesktop.org/attachment.cgi?id=13581 (patch for 13519)
- https://bugs.freedesktop.org/attachment.cgi?id=13178 (testcase for 13520)
- https://bugs.freedesktop.org/attachment.cgi?id=13099 (patch for 13520)
- https://www.cve.org/CVERecord?id=CVE-2007-6429