CVE-2016-5407

Description

The (1) XvQueryAdaptors and (2) XvQueryEncodings functions in X.org libXv before 1.0.11 allow remote X servers to trigger out-of-bounds memory access operations via vectors involving length specifications in received data.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
2.123

Associated Vulnerability

VulnerabilityOS Platform
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXfixes-debugsource-5.0.1-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXfixes3-5.0.1-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXfixes3-32bit-5.0.1-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXfixes3-debuginfo-5.0.1-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXfixes3-debuginfo-32bit-5.0.1-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXrandr-debugsource-1.4.2-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXrandr2-1.4.2-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXrandr2-32bit-1.4.2-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXrandr2-debuginfo-1.4.2-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXrandr2-debuginfo-32bit-1.4.2-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXrender-debugsource-0.9.8-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXrender1-0.9.8-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXrender1-32bit-0.9.8-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXrender1-debuginfo-0.9.8-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXrender1-debuginfo-32bit-0.9.8-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXtst-debugsource-1.2.2-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXtst6-1.2.2-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXtst6-32bit-1.2.2-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXtst6-debuginfo-1.2.2-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXtst6-debuginfo-32bit-1.2.2-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXv-debugsource-1.0.10-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXv1-1.0.10-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXv1-32bit-1.0.10-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXv1-debuginfo-1.0.10-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXv1-debuginfo-32bit-1.0.10-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXvMC-debugsource-1.0.8-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXvMC1-1.0.8-5.2.x86_64.rpmLinux
SUSE-SU-2016:2505-1(SUSE Linux Enterprise Desktop 12-SP1 ) libXvMC1-debuginfo-1.0.8-5.2.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXfixes-debugsource-5.0.1-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXfixes3-5.0.1-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXfixes3-32bit-5.0.1-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXfixes3-debuginfo-5.0.1-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXfixes3-debuginfo-32bit-5.0.1-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXrender-debugsource-0.9.8-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXrender1-0.9.8-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXrender1-32bit-0.9.8-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXrender1-debuginfo-0.9.8-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXrender1-debuginfo-32bit-0.9.8-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXtst-debugsource-1.2.2-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXtst6-1.2.2-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXtst6-32bit-1.2.2-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXtst6-debuginfo-1.2.2-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXtst6-debuginfo-32bit-1.2.2-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXv-debugsource-1.0.10-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXv1-1.0.10-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXv1-32bit-1.0.10-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXv1-debuginfo-1.0.10-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXv1-debuginfo-32bit-1.0.10-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXvMC-debugsource-1.0.8-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXvMC1-1.0.8-7.1.x86_64.rpmLinux
SUSE-SU-2016:2828-1(SUSE Linux Enterprise Desktop 12-SP2 ) libXvMC1-debuginfo-1.0.8-7.1.x86_64.rpmLinux
SUSE-SU-2016:3110-1(SUSE Linux Enterprise Server 11-SP4 ) xorg-x11-libXv-7.4-1.20.1.x86_64.rpmLinux
SUSE-SU-2016:3110-1(SUSE Linux Enterprise Server 11-SP4 ) xorg-x11-libXv-32bit-7.4-1.20.1.x86_64.rpmLinux
Libepoxy update (ELSA-2017-1865) libepoxy-1.3.1-1.el7.x86_64.rpmLinux
Libepoxy-devel update (ELSA-2017-1865) libepoxy-devel-1.3.1-1.el7.x86_64.rpmLinux
Libevdev update (ELSA-2017-1865) libevdev-1.5.6-1.el7.x86_64.rpmLinux
Libevdev-devel update (ELSA-2017-1865) libevdev-devel-1.5.6-1.el7.x86_64.rpmLinux
Libevdev-utils update (ELSA-2017-1865) libevdev-utils-1.5.6-1.el7.x86_64.rpmLinux
Libfontenc update (ELSA-2017-1865) libfontenc-1.1.3-3.el7.x86_64.rpmLinux
Libfontenc-devel update (ELSA-2017-1865) libfontenc-devel-1.1.3-3.el7.x86_64.rpmLinux
LibICE update (ELSA-2017-1865) libICE-1.0.9-9.el7.x86_64.rpmLinux
LibICE-devel update (ELSA-2017-1865) libICE-devel-1.0.9-9.el7.x86_64.rpmLinux
Libvdpau update (ELSA-2017-1865) libvdpau-1.1.1-3.el7.x86_64.rpmLinux
Libvdpau-devel update (ELSA-2017-1865) libvdpau-devel-1.1.1-3.el7.x86_64.rpmLinux
LibXaw update (ELSA-2017-1865) libXaw-1.0.13-4.el7.x86_64.rpmLinux
LibXaw-devel update (ELSA-2017-1865) libXaw-devel-1.0.13-4.el7.x86_64.rpmLinux
Libxcb update (ELSA-2017-1865) libxcb-1.12-1.el7.x86_64.rpmLinux
Libxcb-devel update (ELSA-2017-1865) libxcb-devel-1.12-1.el7.x86_64.rpmLinux
LibXcursor update (ELSA-2017-1865) libXcursor-1.1.14-8.el7.x86_64.rpmLinux
LibXcursor-devel update (ELSA-2017-1865) libXcursor-devel-1.1.14-8.el7.x86_64.rpmLinux
LibXdmcp update (ELSA-2017-1865) libXdmcp-1.1.2-6.el7.x86_64.rpmLinux
LibXdmcp-devel update (ELSA-2017-1865) libXdmcp-devel-1.1.2-6.el7.x86_64.rpmLinux
LibXfixes update (ELSA-2017-1865) libXfixes-5.0.3-1.el7.x86_64.rpmLinux
LibXfixes-devel update (ELSA-2017-1865) libXfixes-devel-5.0.3-1.el7.x86_64.rpmLinux
LibXfont update (ELSA-2017-1865) libXfont-1.5.2-1.el7.x86_64.rpmLinux
LibXfont-devel update (ELSA-2017-1865) libXfont-devel-1.5.2-1.el7.x86_64.rpmLinux
LibXfont2 update (ELSA-2017-1865) libXfont2-2.0.1-2.el7.x86_64.rpmLinux
LibXfont2-devel update (ELSA-2017-1865) libXfont2-devel-2.0.1-2.el7.x86_64.rpmLinux
LibXi update (ELSA-2017-1865) libXi-1.7.9-1.el7.x86_64.rpmLinux
LibXi-devel update (ELSA-2017-1865) libXi-devel-1.7.9-1.el7.x86_64.rpmLinux
Libxkbcommon update (ELSA-2017-1865) libxkbcommon-0.7.1-1.el7.x86_64.rpmLinux
Libxkbcommon-devel update (ELSA-2017-1865) libxkbcommon-devel-0.7.1-1.el7.x86_64.rpmLinux
Libxkbcommon-x11 update (ELSA-2017-1865) libxkbcommon-x11-0.7.1-1.el7.x86_64.rpmLinux
Libxkbcommon-x11-devel update (ELSA-2017-1865) libxkbcommon-x11-devel-0.7.1-1.el7.x86_64.rpmLinux
Libxkbfile update (ELSA-2017-1865) libxkbfile-1.0.9-3.el7.x86_64.rpmLinux
Libxkbfile-devel update (ELSA-2017-1865) libxkbfile-devel-1.0.9-3.el7.x86_64.rpmLinux
LibXpm update (ELSA-2017-1865) libXpm-3.5.12-1.el7.x86_64.rpmLinux
LibXpm-devel update (ELSA-2017-1865) libXpm-devel-3.5.12-1.el7.x86_64.rpmLinux
LibXrandr update (ELSA-2017-1865) libXrandr-1.5.1-2.el7.x86_64.rpmLinux
LibXrandr-devel update (ELSA-2017-1865) libXrandr-devel-1.5.1-2.el7.x86_64.rpmLinux
LibXrender update (ELSA-2017-1865) libXrender-0.9.10-1.el7.x86_64.rpmLinux
LibXrender-devel update (ELSA-2017-1865) libXrender-devel-0.9.10-1.el7.x86_64.rpmLinux
LibXt update (ELSA-2017-1865) libXt-1.1.5-3.el7.x86_64.rpmLinux
LibXt-devel update (ELSA-2017-1865) libXt-devel-1.1.5-3.el7.x86_64.rpmLinux
LibXtst update (ELSA-2017-1865) libXtst-1.2.3-1.el7.x86_64.rpmLinux
LibXtst-devel update (ELSA-2017-1865) libXtst-devel-1.2.3-1.el7.x86_64.rpmLinux
LibXv update (ELSA-2017-1865) libXv-1.0.11-1.el7.x86_64.rpmLinux
LibXv-devel update (ELSA-2017-1865) libXv-devel-1.0.11-1.el7.x86_64.rpmLinux
LibXvMC update (ELSA-2017-1865) libXvMC-1.0.10-1.el7.x86_64.rpmLinux
LibXvMC-devel update (ELSA-2017-1865) libXvMC-devel-1.0.10-1.el7.x86_64.rpmLinux
LibXxf86vm update (ELSA-2017-1865) libXxf86vm-1.1.4-1.el7.x86_64.rpmLinux
LibXxf86vm-devel update (ELSA-2017-1865) libXxf86vm-devel-1.1.4-1.el7.x86_64.rpmLinux
Mesa-private-llvm update (ELSA-2017-1865) mesa-private-llvm-3.9.1-3.el7.x86_64.rpmLinux
Mesa-private-llvm-devel update (ELSA-2017-1865) mesa-private-llvm-devel-3.9.1-3.el7.x86_64.rpmLinux
Libvdpau-docs update (ELSA-2017-1865) libvdpau-docs-1.1.1-3.el7.noarch.rpmLinux
Libxcb-doc update (ELSA-2017-1865) libxcb-doc-1.12-1.el7.noarch.rpmLinux
Xcb-proto update (ELSA-2017-1865) xcb-proto-1.12-2.el7.noarch.rpmLinux
Xkeyboard-config update (ELSA-2017-1865) xkeyboard-config-2.20-1.el7.noarch.rpmLinux
Xkeyboard-config-devel update (ELSA-2017-1865) xkeyboard-config-devel-2.20-1.el7.noarch.rpmLinux
Xorg-x11-proto-devel update (ELSA-2017-1865) xorg-x11-proto-devel-7.7-20.el7.noarch.rpmLinux
Libepoxy update (ELSA-2017-1865) libepoxy-1.3.1-1.el7.i686.rpmLinux
Libepoxy-devel update (ELSA-2017-1865) libepoxy-devel-1.3.1-1.el7.i686.rpmLinux
Libevdev update (ELSA-2017-1865) libevdev-1.5.6-1.el7.i686.rpmLinux
Libevdev-devel update (ELSA-2017-1865) libevdev-devel-1.5.6-1.el7.i686.rpmLinux
Libfontenc update (ELSA-2017-1865) libfontenc-1.1.3-3.el7.i686.rpmLinux
Libfontenc-devel update (ELSA-2017-1865) libfontenc-devel-1.1.3-3.el7.i686.rpmLinux
LibICE update (ELSA-2017-1865) libICE-1.0.9-9.el7.i686.rpmLinux
LibICE-devel update (ELSA-2017-1865) libICE-devel-1.0.9-9.el7.i686.rpmLinux
Libvdpau update (ELSA-2017-1865) libvdpau-1.1.1-3.el7.i686.rpmLinux
Libvdpau-devel update (ELSA-2017-1865) libvdpau-devel-1.1.1-3.el7.i686.rpmLinux
LibXaw update (ELSA-2017-1865) libXaw-1.0.13-4.el7.i686.rpmLinux
LibXaw-devel update (ELSA-2017-1865) libXaw-devel-1.0.13-4.el7.i686.rpmLinux
Libxcb update (ELSA-2017-1865) libxcb-1.12-1.el7.i686.rpmLinux
Libxcb-devel update (ELSA-2017-1865) libxcb-devel-1.12-1.el7.i686.rpmLinux
LibXcursor update (ELSA-2017-1865) libXcursor-1.1.14-8.el7.i686.rpmLinux
LibXcursor-devel update (ELSA-2017-1865) libXcursor-devel-1.1.14-8.el7.i686.rpmLinux
LibXdmcp update (ELSA-2017-1865) libXdmcp-1.1.2-6.el7.i686.rpmLinux
LibXdmcp-devel update (ELSA-2017-1865) libXdmcp-devel-1.1.2-6.el7.i686.rpmLinux
LibXfixes update (ELSA-2017-1865) libXfixes-5.0.3-1.el7.i686.rpmLinux
LibXfixes-devel update (ELSA-2017-1865) libXfixes-devel-5.0.3-1.el7.i686.rpmLinux
LibXfont update (ELSA-2017-1865) libXfont-1.5.2-1.el7.i686.rpmLinux
LibXfont-devel update (ELSA-2017-1865) libXfont-devel-1.5.2-1.el7.i686.rpmLinux
LibXfont2 update (ELSA-2017-1865) libXfont2-2.0.1-2.el7.i686.rpmLinux
LibXfont2-devel update (ELSA-2017-1865) libXfont2-devel-2.0.1-2.el7.i686.rpmLinux
LibXi update (ELSA-2017-1865) libXi-1.7.9-1.el7.i686.rpmLinux
LibXi-devel update (ELSA-2017-1865) libXi-devel-1.7.9-1.el7.i686.rpmLinux
Libxkbcommon update (ELSA-2017-1865) libxkbcommon-0.7.1-1.el7.i686.rpmLinux
Libxkbcommon-devel update (ELSA-2017-1865) libxkbcommon-devel-0.7.1-1.el7.i686.rpmLinux
Libxkbcommon-x11 update (ELSA-2017-1865) libxkbcommon-x11-0.7.1-1.el7.i686.rpmLinux
Libxkbcommon-x11-devel update (ELSA-2017-1865) libxkbcommon-x11-devel-0.7.1-1.el7.i686.rpmLinux
Libxkbfile update (ELSA-2017-1865) libxkbfile-1.0.9-3.el7.i686.rpmLinux
Libxkbfile-devel update (ELSA-2017-1865) libxkbfile-devel-1.0.9-3.el7.i686.rpmLinux
LibXpm update (ELSA-2017-1865) libXpm-3.5.12-1.el7.i686.rpmLinux
LibXpm-devel update (ELSA-2017-1865) libXpm-devel-3.5.12-1.el7.i686.rpmLinux
LibXrandr update (ELSA-2017-1865) libXrandr-1.5.1-2.el7.i686.rpmLinux
LibXrandr-devel update (ELSA-2017-1865) libXrandr-devel-1.5.1-2.el7.i686.rpmLinux
LibXrender update (ELSA-2017-1865) libXrender-0.9.10-1.el7.i686.rpmLinux
LibXrender-devel update (ELSA-2017-1865) libXrender-devel-0.9.10-1.el7.i686.rpmLinux
LibXt update (ELSA-2017-1865) libXt-1.1.5-3.el7.i686.rpmLinux
LibXt-devel update (ELSA-2017-1865) libXt-devel-1.1.5-3.el7.i686.rpmLinux
LibXtst update (ELSA-2017-1865) libXtst-1.2.3-1.el7.i686.rpmLinux
LibXtst-devel update (ELSA-2017-1865) libXtst-devel-1.2.3-1.el7.i686.rpmLinux
LibXv update (ELSA-2017-1865) libXv-1.0.11-1.el7.i686.rpmLinux
LibXv-devel update (ELSA-2017-1865) libXv-devel-1.0.11-1.el7.i686.rpmLinux
LibXvMC update (ELSA-2017-1865) libXvMC-1.0.10-1.el7.i686.rpmLinux
LibXvMC-devel update (ELSA-2017-1865) libXvMC-devel-1.0.10-1.el7.i686.rpmLinux
LibXxf86vm update (ELSA-2017-1865) libXxf86vm-1.1.4-1.el7.i686.rpmLinux
LibXxf86vm-devel update (ELSA-2017-1865) libXxf86vm-devel-1.1.4-1.el7.i686.rpmLinux
Mesa-private-llvm update (ELSA-2017-1865) mesa-private-llvm-3.9.1-3.el7.i686.rpmLinux
Mesa-private-llvm-devel update (ELSA-2017-1865) mesa-private-llvm-devel-3.9.1-3.el7.i686.rpmLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234