Your submission was sent successfully! Close

CVE-2016-5407

Published: 13 December 2016

The (1) XvQueryAdaptors and (2) XvQueryEncodings functions in X.org libXv before 1.0.11 allow remote X servers to trigger out-of-bounds memory access operations via vectors involving length specifications in received data.

Notes

AuthorNote
msalvatore
patch released in 2:1.0.10-1+deb8u1
Priority

Low

CVSS 3 base score: 9.8

Status

Package Release Status
libxv
Launchpad, Ubuntu, Debian
artful Ignored
(reached end-of-life)
bionic
Released (2:1.0.11-1)
cosmic
Released (2:1.0.11-1)
disco
Released (2:1.0.11-1)
eoan
Released (2:1.0.11-1)
focal
Released (2:1.0.11-1)
groovy
Released (2:1.0.11-1)
hirsute
Released (2:1.0.11-1)
impish
Released (2:1.0.11-1)
jammy
Released (2:1.0.11-1)
precise Does not exist
(precise was needed)
trusty Does not exist
(trusty was needed)
upstream
Released (2:1.0.10-1+deb8u1, 1.0.11)
xenial
Released (2:1.0.10-1ubuntu0.16.04.1~esm1)
yakkety Ignored
(reached end-of-life)
zesty Ignored
(reached end-of-life)
Patches:
upstream: https://cgit.freedesktop.org/xorg/lib/libXv/commit/?id=d9da580b46a28ab497de2e94fdc7b9ff953dab17