Lucene search

K
ubuntuUbuntuUSN-182-1
HistorySep 12, 2005 - 12:00 a.m.

X server vulnerability

2005-09-1200:00:00
ubuntu.com
38

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

High

EPSS

0.026

Percentile

90.5%

Releases

  • Ubuntu 5.04
  • Ubuntu 4.10

Details

A local privilege escalation vulnerability has been discovered in the
pixmap allocation handling of the X server. By allocating a huge
pixmap, a local user could trigger an integer overflow that resulted
in a memory allocation that was too small for the requested pixmap.
This resulted in a buffer overflow which could eventually be exploited
to execute arbitrary code with full root privileges.

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

High

EPSS

0.026

Percentile

90.5%