7.5

CVE-2013-7439

Multiple off-by-one errors in the (1) MakeBigReq and (2) SetReqLen macros in include/X11/Xlibint.h in X11R6.x and libX11 before 1.6.0 allow remote attackers to have unspecified impact via a crafted request, which triggers a buffer overflow.

Data is provided by the National Vulnerability Database (NVD)
X.OrgLibx11 Version1.0.1
X.OrgLibx11 Version1.0.2
X.OrgLibx11 Version1.0.3
X.OrgLibx11 Version1.1
X.OrgLibx11 Version1.1 Updaterc1
X.OrgLibx11 Version1.1 Updaterc2
X.OrgLibx11 Version1.1.4
X.OrgLibx11 Version1.1.5
X.OrgLibx11 Version1.1.6
X.OrgLibx11 Version1.1.99.1
X.OrgLibx11 Version1.1.99.2
X.OrgLibx11 Version1.2
X.OrgLibx11 Version1.2.1
X.OrgLibx11 Version1.2.2
X.OrgLibx11 Version1.3
X.OrgLibx11 Version1.3.1
X.OrgLibx11 Version1.3.2
X.OrgLibx11 Version1.3.3
X.OrgLibx11 Version1.3.4
X.OrgLibx11 Version1.3.5
X.OrgLibx11 Version1.3.6
X.OrgLibx11 Version1.3.99.901
X.OrgLibx11 Version1.3.99.902
X.OrgLibx11 Version1.3.99.903
X.OrgLibx11 Version1.4.0
X.OrgLibx11 Version1.4.1
X.OrgLibx11 Version1.4.2
X.OrgLibx11 Version1.4.3
X.OrgLibx11 Version1.4.4
X.OrgLibx11 Version1.4.99.901
X.OrgLibx11 Version1.4.99.902
X.OrgLibx11 Version1.5.0
X.OrgLibx11 Version1.5.99.901
X.OrgLibx11 Version1.5.99.902
CanonicalUbuntu Linux Version12.04 SwEditionlts
CanonicalUbuntu Linux Version14.04 SwEditionlts
CanonicalUbuntu Linux Version14.10
DebianDebian Linux Version7.0
X.OrgX11 Version6.0
X.OrgX11 Version6.1
X.OrgX11 Version6.3
X.OrgX11 Version6.4
X.OrgX11 Version6.5.1
X.OrgX11 Version6.6
X.OrgX11 Version6.7
X.OrgX11 Version6.8.0
X.OrgX11 Version6.8.1
X.OrgX11 Version6.8.2
X.OrgX11 Version6.9
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.88% 0.825
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P