CVE-2010-4819

Publication date 3 October 2011

Last updated 24 July 2024


Ubuntu priority

The ProcRenderAddGlyphs function in the Render extension (render/render.c) in X.Org xserver 1.7.7 and earlier allows local users to read arbitrary memory and possibly cause a denial of service (server crash) via unspecified vectors related to an "input sanitization flaw."

Status

Package Ubuntu Release Status
xorg-server 11.10 oneiric
Not affected
11.04 natty
Not affected
10.10 maverick
Not affected
10.04 LTS lucid
Fixed 2:1.7.6-2ubuntu7.8
8.04 LTS hardy Ignored end of life

Patch details

For informational purposes only. We recommend not to cherry-pick updates. How can I get the fixes?

Package Patch details
xorg-server

References

Related Ubuntu Security Notices (USN)

    • USN-1232-1
    • X.Org X server vulnerabilities
    • 18 October 2011

Other references