ALT-PU-2014-2079-1
Closed vulnerabilities
Published: 2016-04-13
BDU:2016-01651
Уязвимость библиотеки Pixman, позволяющая нарушителю вызвать отказ в обслуживании (завершение работы приложения) или выполнить произвольный код
Severity: HIGH (7.5)
References:
Published: 2016-04-13
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2014-9766
Integer overflow in the create_bits function in pixman-bits-image.c in Pixman before 0.32.6 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via large height and stride values.
Severity: CRITICAL (9.8)
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
References:
- DSA-3525
- DSA-3525
- [oss-security] 20160224 [Pixman] create_bits(): Cast the result of height * stride to size_t
- [oss-security] 20160224 [Pixman] create_bits(): Cast the result of height * stride to size_t
- [oss-security] 20160224 Re: [Pixman] create_bits(): Cast the result of height * stride to size_t
- [oss-security] 20160224 Re: [Pixman] create_bits(): Cast the result of height * stride to size_t
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- USN-2918-1
- USN-2918-1
- https://bugs.freedesktop.org/show_bug.cgi?id=69014
- https://bugs.freedesktop.org/show_bug.cgi?id=69014
- https://bugzilla.redhat.com/show_bug.cgi?id=972647
- https://bugzilla.redhat.com/show_bug.cgi?id=972647
- https://cgit.freedesktop.org/pixman/commit/?id=857e40f3d2bc2cfb714913e0cd7e6184cf69aca3
- https://cgit.freedesktop.org/pixman/commit/?id=857e40f3d2bc2cfb714913e0cd7e6184cf69aca3
- [Pixman] 20140409 [PATCH] create_bits(): Cast the result of height * stride to size_t
- [Pixman] 20140409 [PATCH] create_bits(): Cast the result of height * stride to size_t
- [xorg-announce] 20140705 [ANNOUNCE] pixman release 0.32.6 now available
- [xorg-announce] 20140705 [ANNOUNCE] pixman release 0.32.6 now available