diff options
author | Alan Coopersmith <alan.coopersmith@oracle.com> | 2013-03-09 11:44:14 -0800 |
---|---|---|
committer | Alan Coopersmith <alan.coopersmith@oracle.com> | 2013-04-26 19:24:19 -0700 |
commit | 9264a21b688891dbdcee630ff72cf39aa75fc4e1 (patch) | |
tree | 1578c9eb94c6fac76706a0718fd32ea91abcb42c /m4 | |
parent | eae57493feec958bcf733ad0d334715107029f8b (diff) |
unvalidated length in _XtResourceConfigurationEH [CVE-2013-2002]
The RCM_DATA property is expected to be in the format:
resource_length, resource, value
If the property contains a resource_length thats results in a pointer
outside the property string, memory corruption can occur.
Reported-by: Ilja Van Sprundel <ivansprundel@ioactive.com>
Signed-off-by: Alan Coopersmith <alan.coopersmith@oracle.com>
Diffstat (limited to 'm4')
0 files changed, 0 insertions, 0 deletions