Back to search
CVE-2010-4818
Published: Sep 5, 2012
Modified: Aug 7, 2024
PUBLISHED
Description
The GLX extension in X.Org xserver 1.7.7 allows remote authenticated users to cause a denial of service (server crash) and possibly execute arbitrary code via (1) a crafted request that triggers a client swap in glx/glxcmdsswap.c; or (2) a crafted length or (3) a negative value in the screen field in a request to glx/glxcmds.c.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://bugs.freedesktop.org/show_bug.cgi?id=28823
x_refsource_CONFIRM
[oss-security] 20110923 Re: CVE Request: Missing input sanitation in various X GLX calls
mailing-list
x_refsource_MLIST
RHSA-2011:1359
vendor-advisory
x_refsource_REDHAT
RHSA-2011:1360
vendor-advisory
x_refsource_REDHAT
[oss-security] 20110923 Re: CVE Request: Missing input sanitation in various X GLX calls
mailing-list
x_refsource_MLIST
[oss-security] 20110922 CVE Request: Missing input sanitation in various X GLX calls
mailing-list
x_refsource_MLIST
https://bugzilla.redhat.com/show_bug.cgi?id=740954
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now