CVE-2013-4396
NONE EPSS 89.5%
Published Oct 10, 201312y ago · Modified Jun 16, 20262w ago
Published Oct 10, 2013 12y ago
Last Modified Jun 16, 2026 2w ago
Description
Use-after-free vulnerability in the doImageText function in dix/dixfonts.c in the xorg-server module before 1.14.4 in X.Org X11 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted ImageText request that triggers memory-allocation failure.
Threat Intelligence
EPSS Exploit Probability
89.5% percentile
Exploit & Patch Status
No Known Exploit
Patch Available
Weaknesses 1
CWE-399
Affected Products 22
| Vendor | Product | Version | Range |
|---|---|---|---|
| x | x.org_x11 | 6.0 | any |
| x | x.org_x11 | 6.1 | any |
| x | x.org_x11 | 6.3 | any |
| x | x.org_x11 | 6.4 | any |
| x | x.org_x11 | 6.5.1 | any |
| x | x.org_x11 | 6.6 | any |
| x | x.org_x11 | 6.7 | any |
| x | x.org_x11 | 6.8 | any |
| x | x.org_x11 | 6.8.1 | any |
| x | x.org_x11 | 6.8.2 | any |
| x | x.org_x11 | 6.9.0 | any |
| x | x.org_x11 | 7.0 | any |
| x | x.org_x11 | 7.1 | any |
| x | x.org_x11 | 7.2 | any |
| x | x.org_x11 | 7.3 | any |
| x | x.org_x11 | 7.4 | any |
| x | x.org_x11 | 7.5 | any |
| x | x.org_x11 | 7.5 | any |
| x | x.org_x11 | 7.6 | any |
| x | x.org_x11 | 7.6 | any |
| x | x.org_x11 | 7.7 | any |
| x | x.org_x11 | 7.7 | any |
References 9
- lists.opensuse.org http://lists.opensuse.org/opensuse-updates/2013-10/msg00056.html
- lists.opensuse.org http://lists.opensuse.org/opensuse-updates/2013-10/msg00060.html
- lists.x.org http://lists.x.org/archives/xorg-announce/2013-October/002332.html
- openwall.com http://openwall.com/lists/oss-security/2013/10/08/6
- rhn.redhat.com http://rhn.redhat.com/errata/RHSA-2013-1426.html
- debian.org http://www.debian.org/security/2013/dsa-2784
- securityfocus.com http://www.securityfocus.com/bid/62892
- ubuntu.com http://www.ubuntu.com/usn/USN-1990-1
- bugzilla.redhat.com https://bugzilla.redhat.com/show_bug.cgi?id=1014561
Remediation
- bugzilla.redhat.com https://bugzilla.redhat.com/show_bug.cgi?id=1014561