Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 615
Alerts This Week
Warning Icon 1 615

Gentoo: GLSA 200801-09 High Severity: X.Org X Server Integer Overflow

gentoo
Calendar Grey March 5, 2008
Scroller Gentoo
Gentoo Linux Security Advisory GLSA 202103-15 highlights critical vulnerabilities affecting the X.Org X server and the Xfont library.
The previous version of the X.Org X server (1.3.0.0-r4) did not properly address the integer overflow vulnerability in the MIT-SHM extension (CVE-2007-6429)

Summary

Gentoo Linux Security Advisory [ERRATA UPDATE] GLSA 200801-09:03 https://security.gentoo.org/ Severity: High Title: X.Org X server and Xfont library: Multiple vulnerabilities Date: January 20, 2008 Updated: March 05, 2008 Bugs: #204362, #208343 ID: 200801-09:03

Errata ===== The previous version of the X.Org X server (1.3.0.0-r4) did not properly address the integer overflow vulnerability in the MIT-SHM extension (CVE-2007-6429). It failed to check on Pixmaps of certain bit depths.
All users of the X.Org X server package should upgrade to x11-base/xorg-server-1.3.0.0-r5.
The corrected sections appear below.
...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround