CVE-2007-6428 — Xserver vulnerability
8 documents8 sources
Severity
5.0MEDIUMNVD
EPSS
3.4%
top 12.67%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 18
Latest updateMay 1
Description
The ProcGetReservedColormapEntries function in the TOG-CUP extension in X.Org Xserver before 1.4.1 allows context-dependent attackers to read the contents of arbitrary memory locations via a request containing a 32-bit value that is improperly used as an array index.
CVSS vector
AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9
Affected Packages2 packages
Patches
🔴Vulnerability Details
3GHSA▶
GHSA-x5vw-mf64-c93p: The ProcGetReservedColormapEntries function in the TOG-CUP extension in X↗2022-05-01
CVEList
▶
OSV
▶