First published: Fri Apr 06 2007(Updated: )
Integer overflow in ALLOCATE_LOCAL in the ProcXCMiscGetXIDList function in the XC-MISC extension in the X.Org X11 server (xserver) 7.1-1.1.0, and other versions before 20070403, allows remote authenticated users to execute arbitrary code via a large expression, which results in memory corruption.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Xorg-x11-drv-void | =7.1_1.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-1003 is rated as a high severity vulnerability due to the potential for remote authenticated users to execute arbitrary code.
To mitigate CVE-2007-1003, upgrade to a version of the X.Org X11 server released after April 3, 2007.
CVE-2007-1003 is caused by an integer overflow in the ALLOCATE_LOCAL function within the XC-MISC extension.
CVE-2007-1003 affects remote authenticated users of the X.Org X11 server versions prior to 20070403.
The potential impacts of CVE-2007-1003 include memory corruption leading to arbitrary code execution on vulnerable systems.