CVE-2006-6102

Integer overflow in the ProcDbeGetVisualInfo function in the DBE extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and XFree86 X server, allows local users to execute arbitrary code via a crafted X protocol request that triggers memory corruption during processing of unspecified data structures.

Date published : 2007-01-09

http://www.securityfocus.com/bid/21968

http://support.avaya.com/elmodocs2/security/ASA-2007-066.htm