Oval Definition:oval:org.mitre.oval:def:22333
Revision Date:2014-05-26Version:32
Title:ELSA-2008:0031: xorg-x11-server security update (Important)
Description:Multiple integer overflows in X.Org Xserver before 1.4.1 allow context-dependent attackers to execute arbitrary code via (1) a GetVisualInfo request containing a 32-bit value that is improperly used to calculate an amount of memory for allocation by the EVI extension, or (2) a request containing values related to pixmap size that are improperly used in management of shared memory by the MIT-SHM extension.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2007-5760
CVE-2007-5958
CVE-2007-6427
CVE-2007-6428
CVE-2007-6429
ELSA-2008:0031-02
Platform(s):Oracle Linux 5
Product(s):xorg-x11-server
Definition Synopsis
  • Oracle Linux 5.x
  • AND rpm test
  • xorg-x11-server-Xorg is earlier than 0:1.1.1-48.26.el5_1.5
  • OR xorg-x11-server-Xdmx is earlier than 0:1.1.1-48.26.el5_1.5
  • OR xorg-x11-server-Xephyr is earlier than 0:1.1.1-48.26.el5_1.5
  • OR xorg-x11-server-Xvfb is earlier than 0:1.1.1-48.26.el5_1.5
  • OR xorg-x11-server-sdk is earlier than 0:1.1.1-48.26.el5_1.5
  • OR xorg-x11-server is earlier than 0:1.1.1-48.26.el5_1.5
  • OR xorg-x11-server-Xnest is earlier than 0:1.1.1-48.26.el5_1.5
  • BACK