CVE-2013-1990: Buffer Overflow
Published Jun 15, 2013
·Updated
Multiple integer overflows in X.org libXvMC 1.0.7 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XvMCListSurfaceTypes and (2) XvMCListSubpictureTypes functions.
Affected Software
6 affected components
X libXvMC<=1.0.7
X libXvMC=1.0.2
X libXvMC=1.0.3
X libXvMC=1.0.4
X libXvMC=1.0.5
X libXvMC=1.0.6
Event History
Jun 15, 2013
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-1990?
CVE-2013-1990 has a medium severity rating due to its potential to cause buffer overflows.
2
How do I fix CVE-2013-1990?
To fix CVE-2013-1990, upgrade libXvMC to version 1.0.8 or later.
3
What causes CVE-2013-1990?
CVE-2013-1990 is caused by multiple integer overflows in libXvMC affecting memory allocation.
4
Which versions of libXvMC are affected by CVE-2013-1990?
CVE-2013-1990 affects libXvMC versions up to 1.0.7 and certain earlier versions.
5
Can CVE-2013-1990 lead to a system compromise?
Yes, CVE-2013-1990 can lead to a system compromise through the exploitation of buffer overflow vulnerabilities.