[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Multiple integer overflow vulnerabilities in X.org libXrandr

ID: oval:org.secpod.oval:def:20988Date: (C)2014-09-02   (M)2023-07-28
Class: VULNERABILITYFamily: unix




The host is installed with libXrandr before 1.4.1 and is prone to multiple integer overflow vulnerabilities. The flaws are present in the application, which fails to properly handle vectors related to the (1) XRRQueryOutputProperty and (2) XRRQueryProviderProperty functions. Successful exploitation could allow attackers to trigger allocation of insufficient memory and a buffer overflow.

Platform:
Red Hat Enterprise Linux 5
Red Hat Enterprise Linux 6
Product:
libXrandr
Reference:
CVE-2013-1986
CVE    1
CVE-2013-1986
CPE    12
cpe:/o:redhat:enterprise_linux:5
cpe:/o:redhat:enterprise_linux:6
cpe:/a:x:libxrandr:1.3.1
cpe:/a:x:libxrandr:1.4.0
...

© SecPod Technologies