CVE-2013-6424
Publication date 18 January 2014
Last updated 24 July 2024
Ubuntu priority
Integer underflow in the xTrapezoidValid macro in render/picture.h in X.Org allows context-dependent attackers to cause a denial of service (crash) via a negative bottom value.
Status
Package | Ubuntu Release | Status |
---|---|---|
xorg | ||
14.04 LTS trusty | Not in release | |
xorg-server | ||
14.04 LTS trusty |
Not affected
|
|
Notes
mdeslaur
xorg server is actually the xorg-server package the xorg package only contains docs
jdstrand
patch is straightforward but not yet accepted upstream. Open upstream questions as of 2013/12/18 package for Ubuntu 13.10 is available in saucy-proposed downgrading to low since pixman is already fixed, based on bug feedback
Patch details
Package | Patch details |
---|---|
xorg-server |
References
Related Ubuntu Security Notices (USN)
- USN-2500-1
- X.Org X server vulnerabilities
- 17 February 2015