Описание
Security update for xorg-x11-libX11
xorg-x11-libX11 was updated to fix one security issue.
This security issue was fixed:
- CVE-2013-7439: Multiple off-by-one errors in the (1) MakeBigReq and (2) SetReqLen macros in include/X11/Xlibint.h in X11R6.x and libX11 before 1.6.0 allowed remote attackers to have unspecified impact via a crafted request, which triggered a buffer overflow (bsc#927220).
Список пакетов
SUSE Linux Enterprise Desktop 11 SP3
xorg-x11-libX11-7.4-5.11.15.1
xorg-x11-libX11-32bit-7.4-5.11.15.1
SUSE Linux Enterprise Desktop 11 SP4
xorg-x11-libX11-7.4-5.11.15.1
xorg-x11-libX11-32bit-7.4-5.11.15.1
SUSE Linux Enterprise Server 11 SP1-LTSS
xorg-x11-libX11-7.4-5.11.15.1
xorg-x11-libX11-32bit-7.4-5.11.15.1
SUSE Linux Enterprise Server 11 SP1-TERADATA
xorg-x11-libX11-7.4-5.11.15.1
xorg-x11-libX11-32bit-7.4-5.11.15.1
SUSE Linux Enterprise Server 11 SP2-LTSS
xorg-x11-libX11-7.4-5.11.15.1
xorg-x11-libX11-32bit-7.4-5.11.15.1
SUSE Linux Enterprise Server 11 SP3
xorg-x11-libX11-7.4-5.11.15.1
xorg-x11-libX11-32bit-7.4-5.11.15.1
xorg-x11-libX11-x86-7.4-5.11.15.1
SUSE Linux Enterprise Server 11 SP3-TERADATA
xorg-x11-libX11-7.4-5.11.15.1
xorg-x11-libX11-32bit-7.4-5.11.15.1
xorg-x11-libX11-x86-7.4-5.11.15.1
SUSE Linux Enterprise Server 11 SP4
xorg-x11-libX11-7.4-5.11.15.1
xorg-x11-libX11-32bit-7.4-5.11.15.1
xorg-x11-libX11-x86-7.4-5.11.15.1
SUSE Linux Enterprise Server for SAP Applications 11 SP3
xorg-x11-libX11-7.4-5.11.15.1
xorg-x11-libX11-32bit-7.4-5.11.15.1
xorg-x11-libX11-x86-7.4-5.11.15.1
SUSE Linux Enterprise Server for SAP Applications 11 SP4
xorg-x11-libX11-7.4-5.11.15.1
xorg-x11-libX11-32bit-7.4-5.11.15.1
xorg-x11-libX11-x86-7.4-5.11.15.1
SUSE Linux Enterprise Software Development Kit 11 SP3
xorg-x11-libX11-devel-7.4-5.11.15.1
xorg-x11-libX11-devel-32bit-7.4-5.11.15.1
SUSE Linux Enterprise Software Development Kit 11 SP4
xorg-x11-libX11-devel-7.4-5.11.15.1
xorg-x11-libX11-devel-32bit-7.4-5.11.15.1
Ссылки
- Link for SUSE-SU-2015:1334-1
- E-Mail link for SUSE-SU-2015:1334-1
- SUSE Security Ratings
- SUSE Bug 927220
- SUSE CVE CVE-2013-7439 page
Описание
Multiple off-by-one errors in the (1) MakeBigReq and (2) SetReqLen macros in include/X11/Xlibint.h in X11R6.x and libX11 before 1.6.0 allow remote attackers to have unspecified impact via a crafted request, which triggers a buffer overflow.
Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP3:xorg-x11-libX11-32bit-7.4-5.11.15.1
SUSE Linux Enterprise Desktop 11 SP3:xorg-x11-libX11-7.4-5.11.15.1
SUSE Linux Enterprise Desktop 11 SP4:xorg-x11-libX11-32bit-7.4-5.11.15.1
SUSE Linux Enterprise Desktop 11 SP4:xorg-x11-libX11-7.4-5.11.15.1
Ссылки
- CVE-2013-7439
- SUSE Bug 927126
- SUSE Bug 927220