Get a Pentest and security assessment of your IT network.

Advisories

iDEFENSE Security Advisory 2007-01-09.4

iDefense Security Advisory – Local exploitation of a memory corruption vulnerability in the “ProcRenderAddGlyphs” function in the X.Org and XFree86 X server could allow an attacker to execute arbitrary code with privileges of the X server, typically root. This vulnerability specifically lies within the Render extension. Insufficient input validation exists when allocating memory for glyph management data structures. By sending a specially crafted X protocol request to the Render extension, an attacker can cause an exploitable memory corruption condition. iDefense has confirmed the existence of this vulnerability in the X.Org server version 7.1-1.1.0. Previous versions may also be affected.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/53575/01.09.07-4.txt

Source: https://packetstormsecurity.com/files/53575/iDEFENSE-Security-Advisory-2007-01-09.4.html

Related posts
Advisories

57657.html

Advisories

Secunia Security Advisory 17317

Advisories

Ubuntu Security Notice 284-1

Advisories

Hardened-PHP Project Security Advisory 2006-14.139