Back to search
CVE-2017-16612
Published: Dec 1, 2017
Modified: Aug 5, 2024
PUBLISHED
Description
libXcursor before 1.1.15 has various integer overflows that could lead to heap buffer overflows when processing malicious cursors, e.g., with programs like GIMP. It is also possible that an attack vector exists against the related code in cursor/xcursor.c in Wayland through 1.14.0.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
USN-3622-1
vendor-advisory
x_refsource_UBUNTU
[oss-security] 20171128 CVE-2017-16612 libXcursor: heap overflows when parsing malicious files
mailing-list
x_refsource_MLIST
https://bugzilla.suse.com/show_bug.cgi?id=1065386
x_refsource_CONFIRM
GLSA-201801-04
vendor-advisory
x_refsource_GENTOO
USN-3501-1
vendor-advisory
x_refsource_UBUNTU
[debian-lts-announce] 20171210 [SECURITY] [DLA 1201-1] libxcursor security update
mailing-list
x_refsource_MLIST
[freedesktop-xorg-announce] 20171128 libXcursor 1.1.15
mailing-list
x_refsource_MLIST
http://security.cucumberlinux.com/security/details.php?id=156
x_refsource_CONFIRM
DSA-4059
vendor-advisory
x_refsource_DEBIAN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now