CVE-2016-7942

The XGetImage function in X.org libX11 before 1.6.4 might allow remote X servers to gain privileges via vectors involving image type and geometry, which triggers out-of-bounds read operations.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 89%
Affected Products (NVD)
VendorProductVersion
x.orglibx11
𝑥
≤ 1.6.3
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
libx11
bookworm
2:1.8.4-2+deb12u2
fixed
bookworm (security)
2:1.8.4-2+deb12u2
fixed
bullseye
2:1.7.2-1+deb11u2
fixed
bullseye (security)
2:1.7.2-1+deb11u2
fixed
sid
2:1.8.10-2
fixed
trixie
2:1.8.7-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
libx11
artful
ignored
bionic
Fixed 2:1.6.4-1
released
precise
ignored
trusty
Fixed 2:1.6.2-1ubuntu2.1
released
xenial
Fixed 2:1.6.3-1ubuntu2.1
released
yakkety
ignored
zesty
ignored
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
libX11-6
suse enterprise sap 12 SP1
1.6.2-11.1
fixed
suse enterprise sap 12 SP2
1.6.2-11.1
fixed
suse enterprise sap 12 SP5
1.6.2-12.5.1
fixed
suse enterprise server 12 SP1
1.6.2-11.1
fixed
suse enterprise server 12 SP2
1.6.2-11.1
fixed
suse enterprise server 12 SP4
1.6.2-12.5.1
fixed
suse enterprise server 12 SP5
1.6.2-12.5.1
fixed
libX11-6-32bit
suse enterprise sap 12 SP1
1.6.2-11.1
fixed
suse enterprise sap 12 SP2
1.6.2-11.1
fixed
suse enterprise sap 12 SP5
1.6.2-12.5.1
fixed
suse enterprise server 12 SP1
1.6.2-11.1
fixed
suse enterprise server 12 SP2
1.6.2-11.1
fixed
suse enterprise server 12 SP4
1.6.2-12.5.1
fixed
suse enterprise server 12 SP5
1.6.2-12.5.1
fixed
libX11-data
suse enterprise sap 12 SP1
1.6.2-11.1
fixed
suse enterprise sap 12 SP2
1.6.2-11.1
fixed
suse enterprise sap 12 SP5
1.6.2-12.5.1
fixed
suse enterprise server 12 SP1
1.6.2-11.1
fixed
suse enterprise server 12 SP2
1.6.2-11.1
fixed
suse enterprise server 12 SP4
1.6.2-12.5.1
fixed
suse enterprise server 12 SP5
1.6.2-12.5.1
fixed
libX11-xcb1
suse enterprise sap 12 SP1
1.6.2-11.1
fixed
suse enterprise sap 12 SP2
1.6.2-11.1
fixed
suse enterprise sap 12 SP5
1.6.2-12.5.1
fixed
suse enterprise server 12 SP1
1.6.2-11.1
fixed
suse enterprise server 12 SP2
1.6.2-11.1
fixed
suse enterprise server 12 SP4
1.6.2-12.5.1
fixed
suse enterprise server 12 SP5
1.6.2-12.5.1
fixed
libX11-xcb1-32bit
suse enterprise sap 12 SP1
1.6.2-11.1
fixed
suse enterprise sap 12 SP2
1.6.2-11.1
fixed
suse enterprise sap 12 SP5
1.6.2-12.5.1
fixed
suse enterprise server 12 SP1
1.6.2-11.1
fixed
suse enterprise server 12 SP2
1.6.2-11.1
fixed
suse enterprise server 12 SP4
1.6.2-12.5.1
fixed
suse enterprise server 12 SP5
1.6.2-12.5.1
fixed
libXfixes3
suse enterprise sap 12 SP1
5.0.1-5.2
fixed
suse enterprise sap 12 SP2
5.0.1-7.1
fixed
suse enterprise server 12 SP1
5.0.1-5.2
fixed
suse enterprise server 12 SP2
5.0.1-7.1
fixed
libXfixes3-32bit
suse enterprise sap 12 SP1
5.0.1-5.2
fixed
suse enterprise sap 12 SP2
5.0.1-7.1
fixed
suse enterprise server 12 SP1
5.0.1-5.2
fixed
suse enterprise server 12 SP2
5.0.1-7.1
fixed
libXi6
suse enterprise sap 12 SP1
1.7.4-12.2
fixed
suse enterprise sap 12 SP2
1.7.4-14.1
fixed
suse enterprise server 12 SP1
1.7.4-12.2
fixed
suse enterprise server 12 SP2
1.7.4-14.1
fixed
libXi6-32bit
suse enterprise sap 12 SP1
1.7.4-12.2
fixed
suse enterprise sap 12 SP2
1.7.4-14.1
fixed
suse enterprise server 12 SP1
1.7.4-12.2
fixed
suse enterprise server 12 SP2
1.7.4-14.1
fixed
libXrandr2
suse enterprise sap 12 SP1
1.4.2-5.2
fixed
suse enterprise server 12 SP1
1.4.2-5.2
fixed
libXrandr2-32bit
suse enterprise sap 12 SP1
1.4.2-5.2
fixed
suse enterprise server 12 SP1
1.4.2-5.2
fixed
libXrender1
suse enterprise sap 12 SP1
0.9.8-5.2
fixed
suse enterprise sap 12 SP2
0.9.8-7.1
fixed
suse enterprise server 12 SP1
0.9.8-5.2
fixed
suse enterprise server 12 SP2
0.9.8-7.1
fixed
libXrender1-32bit
suse enterprise sap 12 SP1
0.9.8-5.2
fixed
suse enterprise sap 12 SP2
0.9.8-7.1
fixed
suse enterprise server 12 SP1
0.9.8-5.2
fixed
suse enterprise server 12 SP2
0.9.8-7.1
fixed
libXtst6
suse enterprise sap 12 SP1
1.2.2-5.2
fixed
suse enterprise sap 12 SP2
1.2.2-7.1
fixed
suse enterprise server 12 SP1
1.2.2-5.2
fixed
suse enterprise server 12 SP2
1.2.2-7.1
fixed
libXtst6-32bit
suse enterprise sap 12 SP1
1.2.2-5.2
fixed
suse enterprise sap 12 SP2
1.2.2-7.1
fixed
suse enterprise server 12 SP1
1.2.2-5.2
fixed
suse enterprise server 12 SP2
1.2.2-7.1
fixed
libXv1
suse enterprise sap 12 SP1
1.0.10-5.2
fixed
suse enterprise sap 12 SP2
1.0.10-7.1
fixed
suse enterprise server 12 SP1
1.0.10-5.2
fixed
suse enterprise server 12 SP2
1.0.10-7.1
fixed
libXv1-32bit
suse enterprise sap 12 SP1
1.0.10-5.2
fixed
suse enterprise sap 12 SP2
1.0.10-7.1
fixed
suse enterprise server 12 SP1
1.0.10-5.2
fixed
suse enterprise server 12 SP2
1.0.10-7.1
fixed
libXvMC1
suse enterprise sap 12 SP1
1.0.8-5.2
fixed
suse enterprise sap 12 SP2
1.0.8-7.1
fixed
suse enterprise server 12 SP1
1.0.8-5.2
fixed
suse enterprise server 12 SP2
1.0.8-7.1
fixed
Common Weakness Enumeration