CVE-2007-6429: Race Condition
Multiple integer overflows in X.Org Xserver before 1.4.1 allow context-dependent attackers to execute arbitrary code via (1) a GetVisualInfo request containing a 32-bit value that is improperly used to calculate an amount of memory for allocation by the EVI extension, or (2) a request containing values related to pixmap size that are improperly used in management of shared memory by the MIT-SHM extension.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-6429?
CVE-2007-6429 is considered critical due to the potential for arbitrary code execution.
How do I fix CVE-2007-6429?
To fix CVE-2007-6429, upgrade to X.Org X server version 1.4.1 or later.
What components are affected by CVE-2007-6429?
CVE-2007-6429 affects the X.Org X server and the associated EVI and MIT-SHM extensions.
What type of vulnerability is CVE-2007-6429?
CVE-2007-6429 is an integer overflow vulnerability that can lead to memory allocation issues.
Can CVE-2007-6429 be exploited remotely?
Yes, CVE-2007-6429 can be exploited by context-dependent attackers, potentially from a remote location.