CVE-2013-1999
Published: 23 May 2013
Buffer overflow in X.org libXvMC 1.0.7 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code via crafted length or index values to the XvMCGetDRInfo function.
Notes
Author | Note |
---|---|
mdeslaur | watch for regression fixed in dsa-2675-2 |
Priority
Status
Package | Release | Status |
---|---|---|
libxvmc Launchpad, Ubuntu, Debian |
lucid |
Ignored
(end of life)
|
precise |
Released
(2:1.0.6-1ubuntu2.1)
|
|
quantal |
Released
(2:1.0.7-1ubuntu1.12.10.1)
|
|
raring |
Released
(2:1.0.7-1ubuntu1.13.04.1)
|
|
upstream |
Pending
(1.0.8)
|
|
Patches: upstream: http://cgit.freedesktop.org/xorg/lib/libXvMC/commit/?id=e9415ddef2ac81d4139bd32d5e9cda9394a60051 (1/1) upstream: http://cgit.freedesktop.org/xorg/lib/libXvMC/commit/?id=8c164524d229adb6141fdac8336b3823e7fe1a5d (regression?) |