CVE-2010-4819

The ProcRenderAddGlyphs function in the Render extension (render/render.c) in X.Org xserver 1.7.7 and earlier allows local users to read arbitrary memory and possibly cause a denial of service (server crash) via unspecified vectors related to an "input sanitization flaw."
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:x:x.org-xserver:*:*:*:*:*:*:*:*
cpe:2.3:a:x:x.org-xserver:1.7:*:*:*:*:*:*:*
cpe:2.3:a:x:x.org-xserver:1.7.6.902:*:*:*:*:*:*:*
cpe:2.3:a:x:x.org-xserver:1.7.7:rc2:*:*:*:*:*:*

History

21 Nov 2024, 01:21

Type Values Removed Values Added
References () http://aix.software.ibm.com/aix/efixes/security/X_advisory2.asc - () http://aix.software.ibm.com/aix/efixes/security/X_advisory2.asc -
References () http://cgit.freedesktop.org/xorg/xserver/commit/render/render.c?id=5725849a1b427cd4a72b84e57f211edb35838718 - () http://cgit.freedesktop.org/xorg/xserver/commit/render/render.c?id=5725849a1b427cd4a72b84e57f211edb35838718 -
References () http://rhn.redhat.com/errata/RHSA-2011-1359.html - () http://rhn.redhat.com/errata/RHSA-2011-1359.html -
References () http://rhn.redhat.com/errata/RHSA-2011-1360.html - () http://rhn.redhat.com/errata/RHSA-2011-1360.html -
References () http://securitytracker.com/id?1026149 - () http://securitytracker.com/id?1026149 -
References () http://www.openwall.com/lists/oss-security/2011/09/22/8 - () http://www.openwall.com/lists/oss-security/2011/09/22/8 -
References () http://www.openwall.com/lists/oss-security/2011/09/23/5 - () http://www.openwall.com/lists/oss-security/2011/09/23/5 -
References () https://bugs.freedesktop.org/show_bug.cgi?id=28801 - () https://bugs.freedesktop.org/show_bug.cgi?id=28801 -

Information

Published : 2012-09-05 23:55

Updated : 2024-11-21 01:21


NVD link : CVE-2010-4819

Mitre link : CVE-2010-4819

CVE.ORG link : CVE-2010-4819


JSON object : View

Products Affected

x

  • x.org-xserver
CWE
CWE-20

Improper Input Validation