Oval Definition:oval:org.mitre.oval:tst:35908
Comment:xorg-x11-server-Xdmx is earlier than 0:1.1.1-48.26.el5_1.5
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:14353
State:oval:org.mitre.oval:ste:10751
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:10372
V
The XInput extension in X.Org Xserver before 1.4.1 allows context-dependent attackers to execute arbitrary code via requests related to byte swapping and heap corruption within multiple functions, a different vulnerability than CVE-2007-4990.
2013-04-29
oval:org.mitre.oval:def:10991
V
X.Org Xserver before 1.4.1 allows local users to determine the existence of arbitrary files via a filename argument in the -sp option to the X program, which produces different error messages depending on whether the filename exists.
2013-04-29
oval:org.mitre.oval:def:11045
V
Multiple integer overflows in X.Org Xserver before 1.4.1 allow context-dependent attackers to execute arbitrary code via (1) a GetVisualInfo request containing a 32-bit value that is improperly used to calculate an amount of memory for allocation by the EVI extension, or (2) a request containing values related to pixmap size that are improperly used in management of shared memory by the MIT-SHM extension.
2013-04-29
oval:org.mitre.oval:def:11718
V
Array index error in the XFree86-Misc extension in X.Org Xserver before 1.4.1 allows context-dependent attackers to execute arbitrary code via a PassMessage request containing a large array index.
2013-04-29
oval:org.mitre.oval:def:11754
V
The ProcGetReservedColormapEntries function in the TOG-CUP extension in X.Org Xserver before 1.4.1 allows context-dependent attackers to read the contents of arbitrary memory locations via a request containing a 32-bit value that is improperly used as an array index.
2013-04-29
BACK