Search/CVE-2007-6429
CVE

CVE-2007-6429

Multiple integer overflows in X.Org Xserver before 1.4.1 allow context-dependent attackers to execute arbitrary code via (1) a GetVisualInfo request containing a 32-bit value that is improperly used to calculate an amount of memory for allocation by the EVI extension, or (2) a request containing values related to pixmap size that are improperly used in management of shared memory by the MIT-SHM extension.

CVSS v3.1
EPSS
2.50%
probability of exploitation in 30 days
CISA KEV
Not listed
no confirmed exploitation reported
News coverage
0
sources referencing this CVE
Connections
4 relationships
Timeline
disclosure → media coverage
Jan 18, 2008
Disclosure — published as a CVE record. · last revised by NVD Apr 23, 2026