[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2008-2362Date: (C)2008-06-16   (M)2023-12-22


Multiple integer overflows in the Render extension in the X server 1.4 in X.Org X11R7.3 allow context-dependent attackers to execute arbitrary code via a (1) SProcRenderCreateLinearGradient, (2) SProcRenderCreateRadialGradient, or (3) SProcRenderCreateConicalGradient request with an invalid field specifying the number of bytes to swap in the request data, which triggers heap memory corruption.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 10.0
Exploit Score: 10.0
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
SECTRACK-1020245
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=720
http://www.securityfocus.com/archive/1/493548/100/0/threaded
http://www.securityfocus.com/archive/1/493550/100/0/threaded
SUNALERT-238686
BID-29670
SECUNIA-30627
SECUNIA-30630
SECUNIA-30637
SECUNIA-30659
SECUNIA-30664
SECUNIA-30666
SECUNIA-30671
SECUNIA-30715
SECUNIA-30772
SECUNIA-30809
SECUNIA-30843
SECUNIA-31025
SECUNIA-31109
SECUNIA-32099
SECUNIA-33937
ADV-2008-1803
ADV-2008-1833
ADV-2008-1983
APPLE-SA-2009-02-12
DSA-1595
GLSA-200806-07
GLSA-200807-07
MDVSA-2008:116
MDVSA-2008:179
RHSA-2008:0504
SUSE-SA:2008:027
SUSE-SR:2008:019
USN-616-1
http://lists.freedesktop.org/archives/xorg/2008-June/036026.html
ftp://ftp.freedesktop.org/pub/xorg/X11R7.3/patches/xorg-xserver-1.4-cve-2008-2362.diff
http://support.apple.com/kb/HT3438
http://support.avaya.com/elmodocs2/security/ASA-2008-249.htm
http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0201
https://issues.rpath.com/browse/RPL-2607
https://issues.rpath.com/browse/RPL-2619
oval:org.mitre.oval:def:11246

CWE    1
CWE-189
OVAL    3
oval:org.mitre.oval:def:8313
oval:org.secpod.oval:def:301595
oval:org.secpod.oval:def:301416

© SecPod Technologies