7.5
CVSSv2

CVE-2004-0094

Published: 15/03/2004 Updated: 10/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Integer signedness errors in XFree86 4.1.0 allow remote malicious users to cause a denial of service and possibly execute arbitrary code when using the GLX extension and Direct Rendering Infrastructure (DRI).

Vulnerable Product Search on Vulmon Subscribe to Product

xfree86 project x11r6 4.1.0

xfree86 project x11r6 4.1.11

xfree86 project x11r6 4.2.1

xfree86 project x11r6 4.3.0

xfree86 project x11r6 4.1.12

xfree86 project x11r6 4.2.0

Vendor Advisories

A number of vulnerabilities have been discovered in XFree86 The corrections are listed below with the identification from the Common Vulnerabilities and Exposures (CVE) project: CAN-2004-0083: Buffer overflow in ReadFontAlias from dirfilec of XFree86 410 through 430 allows local users and remote attackers to execute arbitrary cod ...