CVE-2017-10971: Buffer Overflow
Published Jul 6, 2017
·Updated
In the X.Org X server before 2017-06-19, a user authenticated to an X Session could crash or execute code in the context of the X Server by exploiting a stack overflow in the endianness conversion of X Events.
Affected Software
2 affected components
X.Org xorg-server<=1.19.3
X.Org X Server<=1.19.3
Event History
Jul 6, 2017
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Data Sourced
via NVD·11:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-10971?
CVE-2017-10971 has a high severity rating due to the potential for a stack overflow leading to code execution.
2
How do I fix CVE-2017-10971?
To fix CVE-2017-10971, you should update the X.Org X server to version 1.19.4 or higher.
3
What type of attack does CVE-2017-10971 facilitate?
CVE-2017-10971 facilitates attacks that can crash the X server or execute arbitrary code within its context.
4
Who is affected by CVE-2017-10971?
Users of X.Org X server versions prior to 1.19.4 who are authenticated to an X Session are affected by CVE-2017-10971.
5
What is the impact of exploiting CVE-2017-10971?
Exploiting CVE-2017-10971 can lead to denial of service or remote code execution within the X server environment.