Upstream information
Description
The XInput extension in X.Org Xserver before 1.4.1 allows context-dependent attackers to execute arbitrary code via requests related to byte swapping and heap corruption within multiple functions, a different vulnerability than CVE-2007-4990.NVD CVSS v2 Base Score: 9.3 (AV:N/AC:M/Au:N/C:C/I:C/A:C)
Novell/SUSE information
Novell Bugzilla entry: 345127 SUSE Security Advisories:- SUSE-SA:2008:003, published Thu, 17 Jan 2008 15:00:00 +0000
- SUSE-SR:2008:003, published Thu, 07 Feb 2008 18:00:00 +0000
- SUSE-SR:2008:008, published Fri, 04 Apr 2008 16:00:00 +0000
List of released packages
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| SUSE LINUX 10.1 |
| |
| Novell Linux Desktop 9 for x86_64 |
| sles9-oes.x86 YOU Patch Nr: 12040 |
| Novell Linux Desktop 9 for x86 Open Enterprise Server |
| sles9-oes.x86 YOU Patch Nr: 12040 |
| Novell Linux Desktop 9 for x86 Novell Linux Desktop 9 for x86_64 Open Enterprise Server |
| core9.s390 sles9-oes.x86 YOU Patch Nr: 12043 |
| SUSE LINUX 10.1 |
| |
| SUSE LINUX 10.1 |
|
