9.8
CVSSv3

CVE-2016-7948

Published: 13/12/2016 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

X.org libXrandr prior to 1.5.1 allows remote X servers to trigger out-of-bounds write operations by leveraging mishandling of reply data.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

x.org libxrandr

fedoraproject fedora 25

fedoraproject fedora 24

Vendor Advisories

Debian Bug report logs - #840441 libxrandr: CVE-2016-7947 CVE-2016-7948 Package: src:libxrandr; Maintainer for src:libxrandr is Debian X Strike Force <debian-x@listsdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Tue, 11 Oct 2016 15:45:01 UTC Severity: important Tags: patch, security, upstre ...
Several security issues were fixed in libXrandr ...
Xorg libXrandr before 151 allows remote X servers to trigger out-of-bounds write operations by leveraging mishandling of reply data ...