Pedro Ribeiro reported an issue to the X.Org security team in which an authenticated X client can cause an X server to use memory after it was freed, potentially leading to crash and/or memory corruption. The x11-server package have been patched to fix above problem (CVE-2013-4396). References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2013-4396 http://lists.x.org/archives/xorg-announce/2013-October/002332.html https://bugzilla.redhat.com/show_bug.cgi?id=1014561 Reproducible: Steps to Reproduce:
CVE: (none) => CVE-2013-4396Whiteboard: (none) => MGA2TOO
Source RPM: x11-server-1.13.4-2.2.mga3 => x11-server-1.13.4-2.2.mga3, x11-server-1.11.4-2.4.mga2
Thanks Funda. We do already have a bug for this. *** This bug has been marked as a duplicate of bug 11428 ***
Status: NEW => RESOLVEDCC: (none) => luigiwalserResolution: (none) => DUPLICATE