libXv: insufficient validation
| Package(s): | libXv | CVE #(s): | CVE-2016-5407 | ||||||||||||||||||||||||
| Created: | October 10, 2016 | Updated: | December 7, 2016 | ||||||||||||||||||||||||
| Description: | From the Red Hat bugzilla:
It was found that when receiving a response from the server protocol data is not validated sufficiently. The Xv query functions for adaptors and encodings suffer from out of boundary accesses if a hostile X server sends a maliciously crafted response. | ||||||||||||||||||||||||||
| Alerts: |
| ||||||||||||||||||||||||||