CVE-2013-1987

Severity CVSS v4.0:
Pending analysis
Type:
CWE-189 Numeric Errors
Publication date:
15/06/2013
Last modified:
11/04/2025

Description

Multiple integer overflows in X.org libXrender 0.9.7 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XRenderQueryFilters, (2) XRenderQueryFormats, and (3) XRenderQueryPictIndexValues functions.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:canonical:ubuntu_linux:10.04:-:lts:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:12.04:-:lts:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:12.10:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:13.04:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:opensuse:12.2:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:opensuse:12.3:*:*:*:*:*:*:*
cpe:2.3:a:x:libxrender:*:*:*:*:*:*:*:* 0.9.7 (including)
cpe:2.3:a:x:libxrender:0.9.1:*:*:*:*:*:*:*
cpe:2.3:a:x:libxrender:0.9.2:*:*:*:*:*:*:*
cpe:2.3:a:x:libxrender:0.9.3:*:*:*:*:*:*:*
cpe:2.3:a:x:libxrender:0.9.4:*:*:*:*:*:*:*
cpe:2.3:a:x:libxrender:0.9.5:*:*:*:*:*:*:*
cpe:2.3:a:x:libxrender:0.9.6:*:*:*:*:*:*:*