CVE-2006-0197
Last modified
CVE-2006-0197 is a vulnerability of currently unknown severity. The XClientMessageEvent struct used in certain components of X.Org 6.8.2 and earlier, possibly including (1) the X server and (2) Xlib, uses a "long" specifier for elements of the l array, which results in inconsistent sizes in the struct on 32-bit versus 64-bit platforms, and might allow attackers to cause a denial of service (application crash) and possibly conduct other attacks.. EPSS estimates a 1.04% chance of exploitation in the next 30 days.
Description
The XClientMessageEvent struct used in certain components of X.Org 6.8.2 and earlier, possibly including (1) the X server and (2) Xlib, uses a "long" specifier for elements of the l array, which results in inconsistent sizes in the struct on 32-bit versus 64-bit platforms, and might allow attackers to cause a denial of service (application crash) and possibly conduct other attacks.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| X.Org | X.Org | <= 6.8.2 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-0197?
How severe is CVE-2006-0197?
How do I fix CVE-2006-0197?
Are you affected by CVE-2006-0197?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
