Bug 445403 (CVE-2008-1377)
| Summary: | CVE-2008-1377 X.org Record and Security extensions memory corruption | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | Josh Bressers <bressers> |
| Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> |
| Status: | CLOSED ERRATA | QA Contact: | |
| Severity: | medium | Docs Contact: | |
| Priority: | medium | ||
| Version: | unspecified | CC: | airlied, kreilly, osoukup, security-response-team, zcerza |
| Target Milestone: | --- | Keywords: | Reopened, Security |
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | 1.4.99.902-3.20080612.fc9 | Doc Type: | Bug Fix |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2008-06-14 04:15:32 UTC | Type: | --- |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 445437, 445438, 445439, 445440, 445441, 445442, 445443, 450924, 450925, 450926, 450927 | ||
| Bug Blocks: | |||
xorg-x11-server-1.4.99.902-3.20080612.fc9 has been submitted as an update for Fedora 9 iDefense advisory: http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=721 xorg-x11-server-1.4.99.902-3.20080612.fc9 has been pushed to the Fedora 9 testing repository. If problems still persist, please make note of it in this bug report. If you want to test the update, you can install it with su -c 'yum --enablerepo=updates-testing update xorg-x11-server'. You can provide feedback for this update here: http://admin.fedoraproject.org/updates/F9/FEDORA-2008-5254 xorg-x11-server-1.3.0.0-17.fc7 has been pushed to the Fedora 7 stable repository. If problems still persist, please make note of it in this bug report. xorg-x11-server-1.4.99.902-3.20080612.fc9 has been pushed to the Fedora 9 stable repository. If problems still persist, please make note of it in this bug report. xorg-x11-server-1.3.0.0-46.fc8 has been pushed to the Fedora 8 stable repository. If problems still persist, please make note of it in this bug report. This issue was addressed in: Red Hat Enterprise Linux: http://rhn.redhat.com/errata/RHSA-2008-0503.html http://rhn.redhat.com/errata/RHSA-2008-0502.html http://rhn.redhat.com/errata/RHSA-2008-0504.html http://rhn.redhat.com/errata/RHSA-2008-0512.html Fedora: https://admin.fedoraproject.org/updates/F7/FEDORA-2008-5285 https://admin.fedoraproject.org/updates/F8/FEDORA-2008-5279 https://admin.fedoraproject.org/updates/F9/FEDORA-2008-5254 |
iDefense reported several flaws in the X.org Record and Security extensions. The iDefense advisory states: Multiple vulnerabilities are present in the Record and Security extensions. In both cases, untrusted values are taken from a client request, and used to swap the byte order of heap memory that follows the client request. Since the number of bytes to swap is not properly validated, it is possible to corrupt heap memory located after the request. The following functions contain vulnerable code: SProcSecurityGenerateAuthorization() SProcRecordCreateContext() SProcRecordRegisterClients()