The X render (Xrender) extension in X.org X Window System 7.0, 7.1, and 7.2, with Xserver 1.3.0 and earlier, allows remote authenticated users to cause a denial of service (daemon crash) via crafted values to the (1) XRenderCompositeTrapezoids and (2) XRenderAddTraps functions, which trigger a divide-by-zero error.
2007-05-02T10:19:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 5.5 (MEDIUM)
AV:A/AC:L/Au:S/C:N/I:N/A:C
5.1
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | x.org | x_window_system | 7.0 | Yes |
Application | x.org | x_window_system | 7.1 | Yes |
Application | x.org | x_window_system | 7.2 | Yes |
Application | x.org | xserver | ≤ 1.3.0 | Yes |