Lucene search

K
ubuntucveUbuntu.comUB:CVE-2007-4730
HistorySep 11, 2007 - 12:00 a.m.

CVE-2007-4730

2007-09-1100:00:00
ubuntu.com
ubuntu.com
10

4.3 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:S/C:P/I:P/A:P

0.0005 Low

EPSS

Percentile

17.0%

Buffer overflow in the compNewPixmap function in compalloc.c in the
Composite extension for the X.org X11 server before 1.4 allows local users
to execute arbitrary code by copying data from a large pixel depth pixmap
into a smaller pixel depth pixmap.

Notes

Author Note
kees The vulnerable code is actually disabled by patches in edgy+
OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchxorg-server< 1.0.2-0ubuntu10.7UNKNOWN

4.3 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:S/C:P/I:P/A:P

0.0005 Low

EPSS

Percentile

17.0%