X.org libXt 1.1.3 and earlier does not check the return value of the XGetWindowProperty function, which allows X servers to trigger use of an uninitialized pointer and memory corruption via vectors related to the (1) ReqCleanup, (2) HandleSelectionEvents, (3) ReqTimedOut, (4) HandleNormal, and (5) HandleSelectionReplies functions.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2013-06-15 20:55
Updated : 2024-02-04 18:16
NVD link : CVE-2013-2005
Mitre link : CVE-2013-2005
CVE.ORG link : CVE-2013-2005
JSON object : View
Products Affected
x
- libxt
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer