CVE-2007-6427
EPSS 4.2%
Description
The XInput extension in X.Org Xserver before 1.4.1 allows context-dependent attackers to execute arbitrary code via requests related to byte swapping and heap corruption within multiple functions, a different vulnerability than CVE-2007-4990.
How to fix CVE-2007-6427
To remediate CVE-2007-6427, upgrade the affected package to a fixed version below.
- Debian/xorg-server—upgrade to 2:1.4.1~git20080105-2 or later
Is CVE-2007-6427 being exploited?
Low — EPSS is 4.2%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 2:1.4.1~git20080105-2