Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-6429

Опубликовано: 18 янв. 2008
Источник: nvd
CVSS2: 9.3
EPSS Низкий

Описание

Multiple integer overflows in X.Org Xserver before 1.4.1 allow context-dependent attackers to execute arbitrary code via (1) a GetVisualInfo request containing a 32-bit value that is improperly used to calculate an amount of memory for allocation by the EVI extension, or (2) a request containing values related to pixmap size that are improperly used in management of shared memory by the MIT-SHM extension.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:x.org:evi:*:*:*:*:*:*:*:*
cpe:2.3:a:x.org:mit-shm:*:*:*:*:*:*:*:*
cpe:2.3:a:x.org:xserver:*:*:*:*:*:*:*:*
Версия до 1.4 (включая)

EPSS

Процентиль: 84%
0.0227
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-189

Связанные уязвимости

ubuntu
больше 17 лет назад

Multiple integer overflows in X.Org Xserver before 1.4.1 allow context-dependent attackers to execute arbitrary code via (1) a GetVisualInfo request containing a 32-bit value that is improperly used to calculate an amount of memory for allocation by the EVI extension, or (2) a request containing values related to pixmap size that are improperly used in management of shared memory by the MIT-SHM extension.

redhat
больше 17 лет назад

Multiple integer overflows in X.Org Xserver before 1.4.1 allow context-dependent attackers to execute arbitrary code via (1) a GetVisualInfo request containing a 32-bit value that is improperly used to calculate an amount of memory for allocation by the EVI extension, or (2) a request containing values related to pixmap size that are improperly used in management of shared memory by the MIT-SHM extension.

debian
больше 17 лет назад

Multiple integer overflows in X.Org Xserver before 1.4.1 allow context ...

github
около 3 лет назад

Multiple integer overflows in X.Org Xserver before 1.4.1 allow context-dependent attackers to execute arbitrary code via (1) a GetVisualInfo request containing a 32-bit value that is improperly used to calculate an amount of memory for allocation by the EVI extension, or (2) a request containing values related to pixmap size that are improperly used in management of shared memory by the MIT-SHM extension.

oracle-oval
больше 17 лет назад

ELSA-2008-0031: Important: xorg-x11-server security update (IMPORTANT)

EPSS

Процентиль: 84%
0.0227
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-189