CVE-2016-7950

The XRenderQueryFilters function in X.org libXrender before 0.9.10 allows remote X servers to trigger out-of-bounds write operations via vectors involving filter name lengths.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 73%
Affected Products (NVD)
VendorProductVersion
x.orglibxrender
𝑥
≤ 0.9.9
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
libxrender
bookworm
1:0.9.10-1.1
fixed
bullseye
1:0.9.10-1
fixed
jessie
no-dsa
sid
1:0.9.10-1.1
fixed
trixie
1:0.9.10-1.1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
libxrender
artful
ignored
bionic
not-affected
cosmic
ignored
disco
not-affected
eoan
not-affected
focal
not-affected
groovy
not-affected
hirsute
not-affected
impish
not-affected
jammy
not-affected
kinetic
not-affected
lunar
not-affected
mantic
not-affected
noble
not-affected
precise
ignored
trusty
needed
xenial
Fixed 1:0.9.9-0ubuntu1+esm1
released
yakkety
ignored
zesty
ignored
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
libX11-6
suse enterprise sap 12 SP1
1.6.2-6.2
fixed
suse enterprise sap 12 SP2
1.6.2-8.1
fixed
suse enterprise server 12 SP1
1.6.2-6.2
fixed
suse enterprise server 12 SP2
1.6.2-8.1
fixed
libX11-6-32bit
suse enterprise sap 12 SP1
1.6.2-6.2
fixed
suse enterprise sap 12 SP2
1.6.2-8.1
fixed
suse enterprise server 12 SP1
1.6.2-6.2
fixed
suse enterprise server 12 SP2
1.6.2-8.1
fixed
libX11-data
suse enterprise sap 12 SP1
1.6.2-6.2
fixed
suse enterprise sap 12 SP2
1.6.2-8.1
fixed
suse enterprise server 12 SP1
1.6.2-6.2
fixed
suse enterprise server 12 SP2
1.6.2-8.1
fixed
libX11-xcb1
suse enterprise sap 12 SP1
1.6.2-6.2
fixed
suse enterprise sap 12 SP2
1.6.2-8.1
fixed
suse enterprise server 12 SP1
1.6.2-6.2
fixed
suse enterprise server 12 SP2
1.6.2-8.1
fixed
libX11-xcb1-32bit
suse enterprise sap 12 SP1
1.6.2-6.2
fixed
suse enterprise sap 12 SP2
1.6.2-8.1
fixed
suse enterprise server 12 SP1
1.6.2-6.2
fixed
suse enterprise server 12 SP2
1.6.2-8.1
fixed
libXfixes3
suse enterprise sap 12 SP1
5.0.1-5.2
fixed
suse enterprise sap 12 SP2
5.0.1-7.1
fixed
suse enterprise server 12 SP1
5.0.1-5.2
fixed
suse enterprise server 12 SP2
5.0.1-7.1
fixed
libXfixes3-32bit
suse enterprise sap 12 SP1
5.0.1-5.2
fixed
suse enterprise sap 12 SP2
5.0.1-7.1
fixed
suse enterprise server 12 SP1
5.0.1-5.2
fixed
suse enterprise server 12 SP2
5.0.1-7.1
fixed
libXi6
suse enterprise sap 12 SP1
1.7.4-12.2
fixed
suse enterprise sap 12 SP2
1.7.4-14.1
fixed
suse enterprise server 12 SP1
1.7.4-12.2
fixed
suse enterprise server 12 SP2
1.7.4-14.1
fixed
libXi6-32bit
suse enterprise sap 12 SP1
1.7.4-12.2
fixed
suse enterprise sap 12 SP2
1.7.4-14.1
fixed
suse enterprise server 12 SP1
1.7.4-12.2
fixed
suse enterprise server 12 SP2
1.7.4-14.1
fixed
libXrandr2
suse enterprise sap 12 SP1
1.4.2-5.2
fixed
suse enterprise server 12 SP1
1.4.2-5.2
fixed
libXrandr2-32bit
suse enterprise sap 12 SP1
1.4.2-5.2
fixed
suse enterprise server 12 SP1
1.4.2-5.2
fixed
libXrender1
suse enterprise sap 12 SP1
0.9.8-5.2
fixed
suse enterprise sap 12 SP2
0.9.8-7.1
fixed
suse enterprise sap 12 SP5
0.9.8-7.1
fixed
suse enterprise server 12 SP1
0.9.8-5.2
fixed
suse enterprise server 12 SP2
0.9.8-7.1
fixed
suse enterprise server 12 SP3
0.9.8-7.1
fixed
suse enterprise server 12 SP4
0.9.8-7.1
fixed
suse enterprise server 12 SP5
0.9.8-7.1
fixed
libXrender1-32bit
suse enterprise sap 12 SP1
0.9.8-5.2
fixed
suse enterprise sap 12 SP2
0.9.8-7.1
fixed
suse enterprise sap 12 SP5
0.9.8-7.1
fixed
suse enterprise server 12 SP1
0.9.8-5.2
fixed
suse enterprise server 12 SP2
0.9.8-7.1
fixed
suse enterprise server 12 SP3
0.9.8-7.1
fixed
suse enterprise server 12 SP4
0.9.8-7.1
fixed
suse enterprise server 12 SP5
0.9.8-7.1
fixed
libXtst6
suse enterprise sap 12 SP1
1.2.2-5.2
fixed
suse enterprise sap 12 SP2
1.2.2-7.1
fixed
suse enterprise server 12 SP1
1.2.2-5.2
fixed
suse enterprise server 12 SP2
1.2.2-7.1
fixed
libXtst6-32bit
suse enterprise sap 12 SP1
1.2.2-5.2
fixed
suse enterprise sap 12 SP2
1.2.2-7.1
fixed
suse enterprise server 12 SP1
1.2.2-5.2
fixed
suse enterprise server 12 SP2
1.2.2-7.1
fixed
libXv1
suse enterprise sap 12 SP1
1.0.10-5.2
fixed
suse enterprise sap 12 SP2
1.0.10-7.1
fixed
suse enterprise server 12 SP1
1.0.10-5.2
fixed
suse enterprise server 12 SP2
1.0.10-7.1
fixed
libXv1-32bit
suse enterprise sap 12 SP1
1.0.10-5.2
fixed
suse enterprise sap 12 SP2
1.0.10-7.1
fixed
suse enterprise server 12 SP1
1.0.10-5.2
fixed
suse enterprise server 12 SP2
1.0.10-7.1
fixed
libXvMC1
suse enterprise sap 12 SP1
1.0.8-5.2
fixed
suse enterprise sap 12 SP2
1.0.8-7.1
fixed
suse enterprise server 12 SP1
1.0.8-5.2
fixed
suse enterprise server 12 SP2
1.0.8-7.1
fixed