Candidate: CVE-2013-6425 PublicDate: 2014-01-18 19:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6425 http://www.openwall.com/lists/oss-security/2013/12/03/8 https://ubuntu.com/security/notices/USN-2047-1 Description: Integer underflow in the pixman_trapezoid_valid macro in pixman.h in Pixman before 0.32.0, as used in X.Org server and cairo, allows context-dependent attackers to cause a denial of service (crash) via a negative bottom value. Ubuntu-Description: Notes: Bugs: https://launchpad.net/bugs/1197921 https://bugs.freedesktop.org/show_bug.cgi?id=67484 Priority: medium Discovered-by: Assigned-to: jdstrand CVSS: Patches_pixman: upstream: 5e14da97f16e421d084a9e735be21b1025150f0c (fix) upstream: 2f876cf86718d3dd9b3b04ae9552530edafe58a1 (test case) upstream_pixman: released (0.30.2-2) lucid_pixman: ignored (reached end-of-life) precise_pixman: released (0.24.4-1ubuntu0.1) quantal_pixman: released (0.26.0-3ubuntu0.1) raring_pixman: released (0.28.2-0ubuntu1.1) saucy_pixman: released (0.30.2-1ubuntu0.1) devel_pixman: not-affected (0.30.2-2)