libXcursor before 1.1.15 has various integer overflows that could lead to heap buffer overflows when processing malicious cursors, e.g., with programs like GIMP. It is also possible that an attack vector exists against the related code in cursor/xcursor.c in Wayland through 1.14.0.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2017-12-01T17:00:00

Updated: 2024-08-05T20:27:04.328Z

Reserved: 2017-11-06T00:00:00

Link: CVE-2017-16612

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2017-12-01T17:29:00.510

Modified: 2018-04-11T01:29:01.150

Link: CVE-2017-16612

cve-icon Redhat

Severity : Moderate

Publid Date: 2017-11-25T00:00:00Z

Links: CVE-2017-16612 - Bugzilla