Back to search
CVE-2007-2437
Published: May 2, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
The X render (Xrender) extension in X.org X Window System 7.0, 7.1, and 7.2, with Xserver 1.3.0 and earlier, allows remote authenticated users to cause a denial of service (daemon crash) via crafted values to the (1) XRenderCompositeTrapezoids and (2) XRenderAddTraps functions, which trigger a divide-by-zero error.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://www.rapid7.com/advisories/R7-0027.jsp
x_refsource_MISC
ADV-2007-1658
vdb-entry
x_refsource_VUPEN
ADV-2007-1601
vdb-entry
x_refsource_VUPEN
34905
vdb-entry
x_refsource_OSVDB
1017984
vdb-entry
x_refsource_SECTRACK
25121
third-party-advisory
x_refsource_SECUNIA
xorg-xrender-dos(33976)
vdb-entry
x_refsource_XF
23741
vdb-entry
x_refsource_BID
200067
vendor-advisory
x_refsource_SUNALERT
102901
vendor-advisory
x_refsource_SUNALERT
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now