Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-3418

Опубликовано: 24 апр. 2015
Источник: redhat
CVSS2: 2.3
EPSS Низкий

Описание

The ProcPutImage function in dix/dispatch.c in X.Org Server (aka xserver and xorg-server) before 1.16.4 allows attackers to cause a denial of service (divide-by-zero and crash) via a zero-height PutImage request.

A divide-by-zero flaw was found in the way the X.Org server checked the dimensions of certain images. An attacker could potentially crash the X.Org server by tricking a suitable X application into displaying a specially crafted image file.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5xorg-x11-serverWill not fix
Red Hat Enterprise Linux 7xorg-x11-serverWill not fix
Red Hat Enterprise Linux 6xorg-x11-serverFixedRHBA-2015:144522.07.2015

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-369
https://bugzilla.redhat.com/show_bug.cgi?id=1216020xorg-x11-server: divide-by-zero when checking image dimensions

EPSS

Процентиль: 65%
0.00497
Низкий

2.3 Low

CVSS2

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 9 лет назад

The ProcPutImage function in dix/dispatch.c in X.Org Server (aka xserver and xorg-server) before 1.16.4 allows attackers to cause a denial of service (divide-by-zero and crash) via a zero-height PutImage request.

CVSS3: 7.5
nvd
около 9 лет назад

The ProcPutImage function in dix/dispatch.c in X.Org Server (aka xserver and xorg-server) before 1.16.4 allows attackers to cause a denial of service (divide-by-zero and crash) via a zero-height PutImage request.

CVSS3: 7.5
debian
около 9 лет назад

The ProcPutImage function in dix/dispatch.c in X.Org Server (aka xserv ...

CVSS3: 7.5
github
больше 3 лет назад

The ProcPutImage function in dix/dispatch.c in X.Org Server (aka xserver and xorg-server) before 1.16.4 allows attackers to cause a denial of service (divide-by-zero and crash) via a zero-height PutImage request.

suse-cvrf
больше 10 лет назад

Security update for xorg-x11-server

EPSS

Процентиль: 65%
0.00497
Низкий

2.3 Low

CVSS2