Abhishek Arya discovered that libX11 incorrectly handled memory in the MakeBigReq macro. A remote attacker could use this issue to cause applications to crash, resulting in a denial of service, or possibly execute arbitrary code.
In addition, following the macro fix in libx11, a number of other packages have also been rebuilt as security updates including libxrender, libxext, libxi, libxfixes, libxrandr, libsdl1.2, libxv, libxp, and xserver-xorg-video-vmware.
{ "availability": "No subscription required", "binaries": [ { "binary_version": "1:0.9.8-1build0.14.04.1", "binary_name": "libxrender-dev" }, { "binary_version": "1:0.9.8-1build0.14.04.1", "binary_name": "libxrender1" }, { "binary_version": "1:0.9.8-1build0.14.04.1", "binary_name": "libxrender1-dbg" }, { "binary_version": "1:0.9.8-1build0.14.04.1", "binary_name": "libxrender1-udeb" } ] }