Vulnerability Description
The GLX extension in X.Org xserver 1.7.7 allows remote authenticated users to cause a denial of service (server crash) and possibly execute arbitrary code via (1) a crafted request that triggers a client swap in glx/glxcmdsswap.c; or (2) a crafted length or (3) a negative value in the screen field in a request to glx/glxcmds.c.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| X.Org | X.Org | 1.7.7 |
Related Weaknesses (CWE)
References
- http://cgit.freedesktop.org/xorg/xserver/commit?id=3f0d3f4d97bce75c1828635c322b6
- http://cgit.freedesktop.org/xorg/xserver/commit?id=6c69235a9dfc52e4b4e47630ff4ba
- http://cgit.freedesktop.org/xorg/xserver/commit?id=ec9c97c6bf70b523bc500bd3adf62ExploitPatch
- http://rhn.redhat.com/errata/RHSA-2011-1359.html
- http://rhn.redhat.com/errata/RHSA-2011-1360.html
- http://www.openwall.com/lists/oss-security/2011/09/22/7
- http://www.openwall.com/lists/oss-security/2011/09/23/4
- http://www.openwall.com/lists/oss-security/2011/09/23/6
- https://bugs.freedesktop.org/show_bug.cgi?id=28823
- https://bugzilla.redhat.com/show_bug.cgi?id=740954
- http://cgit.freedesktop.org/xorg/xserver/commit?id=3f0d3f4d97bce75c1828635c322b6
- http://cgit.freedesktop.org/xorg/xserver/commit?id=6c69235a9dfc52e4b4e47630ff4ba
- http://cgit.freedesktop.org/xorg/xserver/commit?id=ec9c97c6bf70b523bc500bd3adf62ExploitPatch
- http://rhn.redhat.com/errata/RHSA-2011-1359.html
- http://rhn.redhat.com/errata/RHSA-2011-1360.html
FAQ
What is CVE-2010-4818?
CVE-2010-4818 is a vulnerability with a CVSS score of 8.5 (HIGH). The GLX extension in X.Org xserver 1.7.7 allows remote authenticated users to cause a denial of service (server crash) and possibly execute arbitrary code via (1) a crafted request that triggers a cli...
How severe is CVE-2010-4818?
CVE-2010-4818 has been rated HIGH with a CVSS base score of 8.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2010-4818?
Check the references section above for vendor advisories and patch information. Affected products include: X.Org X.Org.