|
|
Log in / Subscribe / Register

libXvMC: insufficient validation

Package(s):libXvMC CVE #(s):CVE-2016-7953
Created:October 10, 2016 Updated:December 7, 2016
Description: From the Red Hat bugzilla:

It was found that when receiving a response from the server protocol data is not validated sufficiently. If an empty string is received from an x-server, the buffer might underrun by accessing "rep.nameLen - 1" unconditionally, which could end up being -1.

Alerts:
Fedora FEDORA-2016-d286ffb801 libXvMC 2016-11-01
Slackware SSA:2016-305-02 libX11 2016-10-31
openSUSE openSUSE-SU-2016:2600-1 X 2016-10-24
Debian-LTS DLA-671-1 libxvmc 2016-10-19
Fedora FEDORA-2016-a236cb3315 libXvMC 2016-10-09
openSUSE openSUSE-SU-2016:3031-1 libXvMC 2016-12-07

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds