libXvMC: insufficient validation
| Package(s): | libXvMC | CVE #(s): | CVE-2016-7953 | ||||||||||||||||||||||||
| Created: | October 10, 2016 | Updated: | December 7, 2016 | ||||||||||||||||||||||||
| Description: | From the Red Hat bugzilla:
It was found that when receiving a response from the server protocol data is not validated sufficiently. If an empty string is received from an x-server, the buffer might underrun by accessing "rep.nameLen - 1" unconditionally, which could end up being -1. | ||||||||||||||||||||||||||
| Alerts: |
| ||||||||||||||||||||||||||