Multiple off-by-one errors in the (1) MakeBigReq and (2) SetReqLen macros in include/X11/Xlibint.h in X11R6.x and libX11 before 1.6.0 allow remote attackers to have unspecified impact via a crafted request, which triggers a buffer overflow.
2015-04-16T14:59:00.070
2025-04-12T10:46:40.837
Deferred
CVSSv2: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | x.org | libx11 | 1.0.1 | Yes |
Application | x.org | libx11 | 1.0.2 | Yes |
Application | x.org | libx11 | 1.0.3 | Yes |
Application | x.org | libx11 | 1.1 | Yes |
Application | x.org | libx11 | 1.1 | Yes |
Application | x.org | libx11 | 1.1 | Yes |
Application | x.org | libx11 | 1.1.4 | Yes |
Application | x.org | libx11 | 1.1.5 | Yes |
Application | x.org | libx11 | 1.1.6 | Yes |
Application | x.org | libx11 | 1.1.99.1 | Yes |
Application | x.org | libx11 | 1.1.99.2 | Yes |
Application | x.org | libx11 | 1.2 | Yes |
Application | x.org | libx11 | 1.2.1 | Yes |
Application | x.org | libx11 | 1.2.2 | Yes |
Application | x.org | libx11 | 1.3 | Yes |
Application | x.org | libx11 | 1.3.1 | Yes |
Application | x.org | libx11 | 1.3.2 | Yes |
Application | x.org | libx11 | 1.3.3 | Yes |
Application | x.org | libx11 | 1.3.4 | Yes |
Application | x.org | libx11 | 1.3.5 | Yes |
Application | x.org | libx11 | 1.3.6 | Yes |
Application | x.org | libx11 | 1.3.99.901 | Yes |
Application | x.org | libx11 | 1.3.99.902 | Yes |
Application | x.org | libx11 | 1.3.99.903 | Yes |
Application | x.org | libx11 | 1.4.0 | Yes |
Application | x.org | libx11 | 1.4.1 | Yes |
Application | x.org | libx11 | 1.4.2 | Yes |
Application | x.org | libx11 | 1.4.3 | Yes |
Application | x.org | libx11 | 1.4.4 | Yes |
Application | x.org | libx11 | 1.4.99.901 | Yes |
Application | x.org | libx11 | 1.4.99.902 | Yes |
Application | x.org | libx11 | 1.5.0 | Yes |
Application | x.org | libx11 | 1.5.99.901 | Yes |
Application | x.org | libx11 | 1.5.99.902 | Yes |
Operating System | canonical | ubuntu_linux | 12.04 | Yes |
Operating System | canonical | ubuntu_linux | 14.04 | Yes |
Operating System | canonical | ubuntu_linux | 14.10 | Yes |
Operating System | debian | debian_linux | 7.0 | Yes |
Application | x.org | x11 | 6.0 | Yes |
Application | x.org | x11 | 6.1 | Yes |
Application | x.org | x11 | 6.3 | Yes |
Application | x.org | x11 | 6.4 | Yes |
Application | x.org | x11 | 6.5.1 | Yes |
Application | x.org | x11 | 6.6 | Yes |
Application | x.org | x11 | 6.7 | Yes |
Application | x.org | x11 | 6.8.0 | Yes |
Application | x.org | x11 | 6.8.1 | Yes |
Application | x.org | x11 | 6.8.2 | Yes |
Application | x.org | x11 | 6.9 | Yes |