CVE-2006-6102: Integer Overflow
Integer overflow in the ProcDbeGetVisualInfo function in the DBE extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and XFree86 X server, allows local users to execute arbitrary code via a crafted X protocol request that triggers memory corruption during processing of unspecified data structures.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2006-6102?
CVE-2006-6102 is classified as a critical vulnerability due to its potential to allow local users to execute arbitrary code.
How do I fix CVE-2006-6102?
To fix CVE-2006-6102, update your X.Org server to version 2:1.20.4-1+deb10u4 or higher.
Which versions of X.Org are affected by CVE-2006-6102?
CVE-2006-6102 affects X.Org versions 6.8.2, 6.9.0, 7.0, and 7.1, as well as XFree86 X server.
What type of vulnerability is CVE-2006-6102?
CVE-2006-6102 is an integer overflow vulnerability leading to potential memory corruption.
Who can exploit CVE-2006-6102?
CVE-2006-6102 can be exploited by local users who are able to send crafted X protocol requests.