[prev in list] [next in list] [prev in thread] [next in thread] 

List:       oss-security
Subject:    Re: [oss-security] CVE Request: X.org ProcRenderGlyps input sanitation issue
From:       Josh Bressers <bressers () redhat ! com>
Date:       2011-09-23 18:41:54
Message-ID: 78370d3f-0d25-4d90-988b-681368766450 () zmail01 ! collab ! prod ! int ! phx2 ! redhat ! com
[Download RAW message or body]

Please use CVE-2010-4819

Thanks.

-- 
    JB

----- Original Message -----
> Hi,
> 
> Also from 2010 and me@halfdog.net and the x.org bugtracker:
> 
> https://bugs.freedesktop.org/show_bug.cgi?id=28801
> 
> Adam in comment #c2 thinks this might just discloses memory
> but could not overwrite arbitrary x server memory ...
> However the comment #c0 has a x.org server crash, so I am unsure
> about code execution possibilities.
> 
> Needs one 2010 CVE id I guess.
> 
> Ciao, Marcus
> 
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic