Lucene search

K
cveRedhatCVE-2013-1991
HistoryJun 15, 2013 - 7:55 p.m.

CVE-2013-1991

2013-06-1519:55:01
CWE-189
redhat
web.nvd.nist.gov
51
cve-2013-1991
x.org
libxxf86dga
integer overflow
memory allocation
buffer overflow
xdgaquerymodes
xdgasetmode

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

6.6

Confidence

Low

EPSS

0.004

Percentile

74.8%

Multiple integer overflows in X.org libXxf86dga 1.1.3 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XDGAQueryModes and (2) XDGASetMode functions.

Affected configurations

Nvd
Node
xlibxxf86dgaRange1.1.3
OR
xlibxxf86dgaMatch1.0.1
OR
xlibxxf86dgaMatch1.0.2
OR
xlibxxf86dgaMatch1.0.99.1
OR
xlibxxf86dgaMatch1.0.99.2
OR
xlibxxf86dgaMatch1.1
OR
xlibxxf86dgaMatch1.1.1
OR
xlibxxf86dgaMatch1.1.2
VendorProductVersionCPE
xlibxxf86dga*cpe:2.3:a:x:libxxf86dga:*:*:*:*:*:*:*:*
xlibxxf86dga1.0.1cpe:2.3:a:x:libxxf86dga:1.0.1:*:*:*:*:*:*:*
xlibxxf86dga1.0.2cpe:2.3:a:x:libxxf86dga:1.0.2:*:*:*:*:*:*:*
xlibxxf86dga1.0.99.1cpe:2.3:a:x:libxxf86dga:1.0.99.1:*:*:*:*:*:*:*
xlibxxf86dga1.0.99.2cpe:2.3:a:x:libxxf86dga:1.0.99.2:*:*:*:*:*:*:*
xlibxxf86dga1.1cpe:2.3:a:x:libxxf86dga:1.1:*:*:*:*:*:*:*
xlibxxf86dga1.1.1cpe:2.3:a:x:libxxf86dga:1.1.1:*:*:*:*:*:*:*
xlibxxf86dga1.1.2cpe:2.3:a:x:libxxf86dga:1.1.2:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

6.6

Confidence

Low

EPSS

0.004

Percentile

74.8%