Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-2005

Опубликовано: 15 июн. 2013
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8

Описание

X.org libXt 1.1.3 and earlier does not check the return value of the XGetWindowProperty function, which allows X servers to trigger use of an uninitialized pointer and memory corruption via vectors related to the (1) ReqCleanup, (2) HandleSelectionEvents, (3) ReqTimedOut, (4) HandleNormal, and (5) HandleSelectionReplies functions.

РелизСтатусПримечание
devel

not-affected

1:1.1.3-1+deb7u1
lucid

released

1:1.0.7-1ubuntu0.1
precise

released

1:1.1.1-2ubuntu0.1
quantal

released

1:1.1.3-1ubuntu0.12.10.1
raring

released

1:1.1.3-1ubuntu0.13.04.1
upstream

pending

1.1.4

Показывать по

EPSS

Процентиль: 80%
0.02084
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

redhat
около 13 лет назад

X.org libXt 1.1.3 and earlier does not check the return value of the XGetWindowProperty function, which allows X servers to trigger use of an uninitialized pointer and memory corruption via vectors related to the (1) ReqCleanup, (2) HandleSelectionEvents, (3) ReqTimedOut, (4) HandleNormal, and (5) HandleSelectionReplies functions.

nvd
около 13 лет назад

X.org libXt 1.1.3 and earlier does not check the return value of the XGetWindowProperty function, which allows X servers to trigger use of an uninitialized pointer and memory corruption via vectors related to the (1) ReqCleanup, (2) HandleSelectionEvents, (3) ReqTimedOut, (4) HandleNormal, and (5) HandleSelectionReplies functions.

debian
около 13 лет назад

X.org libXt 1.1.3 and earlier does not check the return value of the X ...

github
около 4 лет назад

X.org libXt 1.1.3 and earlier does not check the return value of the XGetWindowProperty function, which allows X servers to trigger use of an uninitialized pointer and memory corruption via vectors related to the (1) ReqCleanup, (2) HandleSelectionEvents, (3) ReqTimedOut, (4) HandleNormal, and (5) HandleSelectionReplies functions.

fstec
около 13 лет назад

Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 80%
0.02084
Низкий

6.8 Medium

CVSS2