X.Org libXfixes is prone to multiple integer-overflow vulnerabilities.
An attacker can exploit this vulnerability to execute arbitrary code. Failed exploit attempts will likely cause denial-of-service conditions.
libXfixes versions 1.7.6 and prior are vulnerable.
Information
X.org libXi 1.7.2
X.org libXi 1.7.1
X.org libXi 1.6.2
X.org libXi 1.6.1
X.org libXi 1.6
Gentoo Linux
References:
- Re: X.Org security advisory: Protocol handling issues in X Window System client (Seclists.org)
- X.Org Homepage (X.Org)
- Properly validate server responses. (Cgit)