CVE-2007-1003

Publication date 6 April 2007

Last updated 24 July 2024


Ubuntu priority

Integer overflow in ALLOCATE_LOCAL in the ProcXCMiscGetXIDList function in the XC-MISC extension in the X.Org X11 server (xserver) 7.1-1.1.0, and other versions before 20070403, allows remote authenticated users to execute arbitrary code via a large expression, which results in memory corruption.

Status

Package Ubuntu Release Status
xorg-server 7.04 feisty
Fixed 1.2.0-3ubuntu8
6.10 edgy
Fixed 1.1.1-0ubuntu12.2
6.06 LTS dapper
Fixed 1.0.2-0ubuntu10.7

References

Related Ubuntu Security Notices (USN)

    • USN-448-1
    • X.org vulnerabilities
    • 3 April 2007

Other references