Candidate: CVE-2007-6428 References: https://ubuntu.com/security/notices/USN-571-1 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6428 PublicDate: 2008-01-18 23:00:00 UTC Description: The ProcGetReservedColormapEntries function in the TOG-CUP extension in X.Org Xserver before 1.4.1 allows context-dependent attackers to read the contents of arbitrary memory locations via a request containing a 32-bit value that is improperly used as an array index. Ubuntu-Description: Notes: Bugs: https://bugs.freedesktop.org/show_bug.cgi?id=13523 Priority: medium Discovered-by: Assigned-to: kees CVSS: upstream_xorg-server: pending dapper_xorg-server: released (1:1.0.2-0ubuntu10.8) edgy_xorg-server: released (1:1.1.1-0ubuntu12.3) feisty_xorg-server: released (2:1.2.0-3ubuntu8.1) gutsy_xorg-server: released (2:1.3.0.0.dfsg-12ubuntu8.1) devel_xorg-server: released (2:1.4.1~git20080105-1ubuntu2)