CVE-2007-6428: Medium severity X.Org TOG-CUP vulnerability
Published Jan 18, 2008
·Updated
The ProcGetReservedColormapEntries function in the TOG-CUP extension in X.Org Xserver before 1.4.1 allows context-dependent attackers to read the contents of arbitrary memory locations via a request containing a 32-bit value that is improperly used as an array index.
Affected Software
2 affected components
X.Org TOG-CUP
X.Org Xserver<=1.4
Remediation
Patch Available
Event History
Jan 18, 2008
CVE Published
11:00 PM
Jan 19, 2008
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-6428?
CVE-2007-6428 is classified as a high-severity vulnerability due to potential memory disclosure risks.
2
How do I fix CVE-2007-6428?
To mitigate CVE-2007-6428, update to X.Org Xserver version 1.4.1 or later.
3
What software is affected by CVE-2007-6428?
CVE-2007-6428 affects X.Org TOG-CUP extension and X.Org Xserver versions before 1.4.1.
4
Can CVE-2007-6428 be exploited remotely?
Yes, CVE-2007-6428 can be exploited by context-dependent attackers to read memory contents.
5
What are the implications of CVE-2007-6428 for system security?
CVE-2007-6428 can lead to unauthorized access to sensitive information stored in memory, compromising system security.