CVE-2007-6428
EPSS 2.5%
Description
The ProcGetReservedColormapEntries function in the TOG-CUP extension in X.Org Xserver before 1.4.1 allows context-dependent attackers to read the contents of arbitrary memory locations via a request containing a 32-bit value that is improperly used as an array index.
How to fix CVE-2007-6428
To remediate CVE-2007-6428, upgrade the affected package to a fixed version below.
- Debian/xorg-server—upgrade to 2:1.4.1~git20080105-2 or later
Is CVE-2007-6428 being exploited?
Low — EPSS is 2.5%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 2:1.4.1~git20080105-2