Integer overflow in ALLOCATE_LOCAL in the ProcXCMiscGetXIDList function in the XC-MISC extension in the X.Org X11 server (xserver) 7.1-1.1.0, and other versions before 20070403, allows remote authenticated users to execute arbitrary code via a large expression, which results in memory corruption.
| Software | From | Fixed in |
|---|---|---|
| x.org / x11 | 7.1_1.1.0 | 7.1_1.1.0.x |