Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in the X render (Xrender) extension in X.org X server 6.8.0 up to allows attackers to cause a denial of service (crash), as demonstrated by the (1) XRenderCompositeTriStrip and (2) XRenderCompositeTriFan requests in the rendertest from XCB xcb/xcb-demo, which leads to an incorrect memory allocation due to a typo in an expression that uses a "&" instead of a "*" operator. NOTE: the subject line of the original announcement used an incorrect CVE number for this issue.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
X.org X server X render 缓冲区溢出
Vulnerability Description
X.org X server 6.8.0以上版本的X render (Xrender)扩展名存在缓冲区溢出,可以使远程攻击者引起拒绝服务(崩溃),比如通过来自XCB xcb/xcb-demo的rendertest中的(1) XRenderCompositeTriStrip和(2) XRenderCompositeTriFan请求,会因使用"&"而非"*"operator的表达式中的typo而导致错误的内存分配。
CVSS Information
N/A
Vulnerability Type
N/A