A divide-by-zero flaw was found in the way the X.Org server checked the dimensions of certain images. An attacker could potentially crash the X.Org server by tricking a suitable X application into displaying a specially crafted image file.
Find out more about CVE-2015-3418 from the MITRE CVE dictionary dictionary and NIST NVD.
This issue affects the versions of xorg-x11-server as shipped with Red Hat Enterprise Linux 5 and 7. Red Hat Product Security has rated this issue as having Low security impact. A future update may address this issue for Red Hat Enterprise Linux 7.
Red Hat Enterprise Linux 5 is now in Extended Life Cycle phase of the support and maintenance life cycle. This issue is not currently planned to be addressed in future updates.
Base Score | 2.3 |
---|---|
Base Metrics | AV:A/AC:M/Au:S/C:N/I:N/A:P |
Access Vector | Adjacent Network |
Access Complexity | Medium |
Authentication | Single |
Confidentiality Impact | None |
Integrity Impact | None |
Availability Impact | Partial |
Find out more about Red Hat support for the Common Vulnerability Scoring System (CVSS).
Platform | Errata | Release Date |
---|---|---|
Red Hat Enterprise Linux 6 (xorg-x11-server) | RHBA-2015:1445 | 2015-07-22 |
Platform | Package | State |
---|---|---|
Red Hat Enterprise Linux 7 | xorg-x11-server | Fix deferred |
Red Hat Enterprise Linux 5 | xorg-x11-server | Will not fix |