Multiple buffer overflows in X.org libXxf86dga 1.1.3 and earlier allow X servers to cause a denial of service (crash) and possibly execute arbitrary code via crafted length or index values to the (1) XDGAQueryModes and (2) XDGASetMode functions.
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/106870.html
http://www.debian.org/security/2013/dsa-2690
http://www.openwall.com/lists/oss-security/2013/05/23/3
http://www.ubuntu.com/usn/USN-1869-1
http://www.x.org/wiki/Development/Security/Advisory-2013-05-23
OR
cpe:2.3:a:x:libxxf86dga:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:x:libxxf86dga:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:x:libxxf86dga:1.0.99.1:*:*:*:*:*:*:*
cpe:2.3:a:x:libxxf86dga:1.0.99.2:*:*:*:*:*:*:*
cpe:2.3:a:x:libxxf86dga:1.1:*:*:*:*:*:*:*
cpe:2.3:a:x:libxxf86dga:1.1.1:*:*:*:*:*:*:*
cpe:2.3:a:x:libxxf86dga:1.1.2:*:*:*:*:*:*:*
cpe:2.3:a:x:libxxf86dga:*:*:*:*:*:*:*:* versions up to 1.1.3 (inclusive)
ID | Name | Product | Family | Severity |
---|---|---|---|---|
80819 | Oracle Solaris Third-Party Patch Update : xorg (multiple_vulnerabilities_in_x_org) | Nessus | Solaris Local Security Checks | medium |
79560 | Amazon Linux AMI : libX11 / libXcursor,libXfixes,libXi,libXrandr,libXrender,libXres,libXt,libXv,libXvMC,libXxf86dga,libXxf86vm,libdmx,xorg-x11-proto-devel (ALAS-2014-452) | Nessus | Amazon Linux Local Security Checks | medium |
79182 | CentOS 6 : libX11 / libXcursor / libXext / libXfixes / libXi / libXinerama / libXp / libXrandr / etc (CESA-2014:1436) | Nessus | CentOS Local Security Checks | medium |
78841 | Scientific Linux Security Update : X11 client libraries on SL6.x i386/x86_64 (20141014) | Nessus | Scientific Linux Local Security Checks | medium |
78411 | RHEL 6 : X11 client libraries (RHSA-2014:1436) | Nessus | Red Hat Local Security Checks | medium |
75045 | openSUSE Security Update : libXxf86dga (openSUSE-SU-2013:1030-1) | Nessus | SuSE Local Security Checks | medium |
74028 | GLSA-201405-07 : X.Org X Server: Multiple vulnerabilities | Nessus | Gentoo Local Security Checks | medium |
69112 | SuSE 11.3 Security Update : xorg-x11-libs (SAT Patch Number 7944) | Nessus | SuSE Local Security Checks | medium |
67356 | Fedora 18 : libXxf86dga-1.1.3-5.20130524gita8dc6be32.fc18 (2013-9177) | Nessus | Fedora Local Security Checks | medium |
67256 | SuSE 10 Security Update : xorg-x11 (ZYPP Patch Number 8623) | Nessus | SuSE Local Security Checks | medium |
67106 | SuSE 11.2 Security Update : xorg-x11-libs (SAT Patch Number 7846) | Nessus | SuSE Local Security Checks | medium |
66833 | Ubuntu 12.04 LTS / 12.10 / 13.04 : libxxf86dga vulnerabilities (USN-1869-1) | Nessus | Ubuntu Local Security Checks | medium |
66798 | FreeBSD : xorg -- protocol handling issues in X Window System client libraries (2eebebff-cd3b-11e2-8f09-001b38c3836c) | Nessus | FreeBSD Local Security Checks | medium |
66628 | Fedora 19 : libXxf86dga-1.1.3-5.20130524gita8dc6be32.fc19 (2013-9085) | Nessus | Fedora Local Security Checks | medium |
66574 | Debian DSA-2690-1 : libxxf86dga - several vulnerabilities | Nessus | Debian Local Security Checks | medium |