X.Org: Heap overflow in pixmap allocation
1.
Gentoo Linux Security Advisory
Version Information
| Advisory Reference |
GLSA 200509-07 / X.Org |
| Release Date |
September 12, 2005 |
| Latest Revision |
September 12, 2005: 01 |
| Impact |
high |
| Exploitable |
local |
| Package |
Vulnerable versions |
Unaffected versions |
Architecture(s) |
| x11-base/xorg-x11 |
<
6.8.2-r3 |
>=
6.8.2-r3 |
All supported architectures
|
Related bugreports:
#105688
Synopsis
An integer overflow in pixmap memory allocation potentially allows any
X.Org user to execute arbitrary code with elevated privileges.
2.
Impact Information
Background
X.Org is X.Org Foundation's Public Implementation of the X Window
System.
Description
X.Org is missing an integer overflow check during pixmap memory
allocation.
Impact
An X.Org user could exploit this issue to make the X server
execute arbitrary code with elevated privileges.
3.
Resolution Information
Workaround
There is no known workaround at this time.
Resolution
All X.org users should upgrade to the latest version:
Code Listing 3.1: Resolution |
# emerge --sync
# emerge --ask --oneshot --verbose ">=x11-base/xorg-x11-6.8.2-r3"
|
4.
References
|