Multiple off-by-one errors in the (1) MakeBigReq and (2) SetReqLen macros in include/X11/Xlibint.h in X11R6.x and libX11 before 1.6.0 allow remote attackers to have unspecified impact via a crafted request, which triggers a buffer overflow.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "1:0.9.8-1build0.14.04.1", "binary_name": "libxrender-dev" }, { "binary_version": "1:0.9.8-1build0.14.04.1", "binary_name": "libxrender1" }, { "binary_version": "1:0.9.8-1build0.14.04.1", "binary_name": "libxrender1-dbg" }, { "binary_version": "1:0.9.8-1build0.14.04.1", "binary_name": "libxrender1-udeb" } ] }