CVE-2014-8091
Publication date 9 December 2014
Last updated 24 July 2024
Ubuntu priority
X.Org X Window System (aka X11 and X) X11R5 and X.Org Server (aka xserver and xorg-server) before 1.16.3, when using SUN-DES-1 (Secure RPC) authentication credentials, does not check the return value of a malloc call, which allows remote attackers to cause a denial of service (NULL pointer dereference and server crash) via a crafted connection request.
Status
Package | Ubuntu Release | Status |
---|---|---|
nvidia-graphics-drivers-304 | ||
14.04 LTS trusty |
Fixed 304.125-0ubuntu0.0.1
|
|
nvidia-graphics-drivers-304-updates | ||
14.04 LTS trusty |
Fixed 304.125-0ubuntu0.0.1
|
|
nvidia-graphics-drivers-331 | ||
14.04 LTS trusty |
Fixed 331.113-0ubuntu0.0.4
|
|
nvidia-graphics-drivers-331-updates | ||
14.04 LTS trusty |
Fixed 331.113-0ubuntu0.0.4
|
|
xorg-server | ||
14.04 LTS trusty |
Fixed 2:1.15.1-0ubuntu2.4
|
|
xorg-server-lts-trusty | ||
14.04 LTS trusty | Not in release | |
References
Related Ubuntu Security Notices (USN)
- USN-2438-1
- NVIDIA graphics drivers vulnerabilities
- 10 December 2014
- USN-2436-1
- X.Org X server vulnerabilities
- 9 December 2014