CVE-2013-2004
15.06.2013, 20:55
The (1) GetDatabase and (2) _XimParseStringFile functions in X.org libX11 1.5.99.901 (1.6 RC1) and earlier do not restrict the recursion depth when processing directives to include files, which allows X servers to cause a denial of service (stack consumption) via a crafted file.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| x | libx11 | 𝑥 ≤ 1.5.99.901 |
| x | libx11 | 1.5.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libX11-6 |
| ||||||||||||||||||||||||||||||
| libX11-6-32bit |
| ||||||||||||||||||||||||||||||
| libX11-data |
| ||||||||||||||||||||||||||||||
| libX11-devel |
| ||||||||||||||||||||||||||||||
| libX11-xcb1 |
| ||||||||||||||||||||||||||||||
| libX11-xcb1-32bit |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||
|---|---|---|---|
| libX11 |
| ||
| libX11-common |
| ||
| libX11-devel |
| ||
| libXcursor |
| ||
| libXcursor-devel |
| ||
| libXext |
| ||
| libXext-devel |
| ||
| libXfixes |
| ||
| libXfixes-devel |
| ||
| libXi |
| ||
| libXi-devel |
| ||
| libXinerama |
| ||
| libXinerama-devel |
| ||
| libXp |
| ||
| libXp-devel |
| ||
| libXrandr |
| ||
| libXrandr-devel |
| ||
| libXrender |
| ||
| libXrender-devel |
| ||
| libXres |
| ||
| libXres-devel |
| ||
| libXt |
| ||
| libXt-devel |
| ||
| libXtst |
| ||
| libXtst-devel |
| ||
| libXv |
| ||
| libXv-devel |
| ||
| libXvMC |
| ||
| libXvMC-devel |
| ||
| libXxf86dga |
| ||
| libXxf86dga-devel |
| ||
| libXxf86vm |
| ||
| libXxf86vm-devel |
| ||
| libdmx |
| ||
| libdmx-devel |
| ||
| libxcb |
| ||
| libxcb-devel |
| ||
| libxcb-doc |
| ||
| libxcb-python |
| ||
| xcb-proto |
| ||
| xkeyboard-config |
| ||
| xkeyboard-config-devel |
| ||
| xorg-x11-proto-devel |
| ||
| xorg-x11-xtrans-devel |
|
Common Weakness Enumeration
References