Description
The (1) SProcRecordCreateContext and (2) SProcRecordRegisterClients functions in the Record extension and the (3) SProcSecurityGenerateAuthorization function in the Security extension in the X server 1.4 in X.Org X11R7.3 allow context-dependent attackers to execute arbitrary code via requests with crafted length values that specify an arbitrary number of bytes to be swapped on the heap, which triggers heap corruption.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-1595-1 | New xorg-server packages fix several vulnerabilities |
EUVD |
EUVD-2008-1384 | The (1) SProcRecordCreateContext and (2) SProcRecordRegisterClients functions in the Record extension and the (3) SProcSecurityGenerateAuthorization function in the Security extension in the X server 1.4 in X.Org X11R7.3 allow context-dependent attackers to execute arbitrary code via requests with crafted length values that specify an arbitrary number of bytes to be swapped on the heap, which triggers heap corruption. |
Ubuntu USN |
USN-616-1 | X.org vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-07T08:17:34.564Z
Reserved: 2008-03-18T00:00:00.000Z
Link: CVE-2008-1377
No data.
Status : Deferred
Published: 2008-06-16T19:41:00.000
Modified: 2025-04-09T00:30:58.490
Link: CVE-2008-1377
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD
Ubuntu USN