Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-8100
Description:The Render extension in XFree86 4.0.1, X.Org X Window System (aka X11 or X) X11R6.7, and X.Org Server (aka xserver and xorg-server) before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length or index value to the (1) ProcRenderQueryVersion, (2) SProcRenderQueryVersion, (3) SProcRenderQueryPictFormats, (4) SProcRenderQueryPictIndexValues, (5) SProcRenderCreatePicture, (6) SProcRenderChangePicture, (7) SProcRenderSetPictureClipRectangles, (8) SProcRenderFreePicture, (9) SProcRenderComposite, (10) SProcRenderScale, (11) SProcRenderCreateGlyphSet, (12) SProcRenderReferenceGlyphSet, (13) SProcRenderFreeGlyphSet, (14) SProcRenderFreeGlyphs, or (15) SProcRenderCompositeGlyphs function.
Test IDs: 1.3.6.1.4.1.25623.1.0.123226   1.3.6.1.4.1.25623.1.1.4.2015.0045.1  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-8100
61947
http://secunia.com/advisories/61947
62292
http://secunia.com/advisories/62292
71602
http://www.securityfocus.com/bid/71602
DSA-3095
http://www.debian.org/security/2014/dsa-3095
GLSA-201504-06
https://security.gentoo.org/glsa/201504-06
MDVSA-2015:119
http://www.mandriva.com/security/advisories?name=MDVSA-2015:119
http://advisories.mageia.org/MGASA-2014-0532.html
http://advisories.mageia.org/MGASA-2014-0532.html
http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.html
http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.html
http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
http://www.x.org/wiki/Development/Security/Advisory-2014-12-09/
http://www.x.org/wiki/Development/Security/Advisory-2014-12-09/




© 1998-2025 E-Soft Inc. All rights reserved.