Back to Database
Status published
Medium
CVE-2013-2003
Integer overflow in X.org libXcursor 1.1.13 and earlier allows X...
Vulnerability Description
Integer overflow in X.org libXcursor 1.1.13 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the _XcursorFileHeaderCreate function.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2013-2003
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.securityfocus.com/bid/60121
- http://lists.fedoraproject.org/pipermail/package-announce/2013-May/106791.html
- http://www.debian.org/security/2013/dsa-2681
- http://www.ubuntu.com/usn/USN-1856-1
- http://www.openwall.com/lists/oss-security/2013/05/23/3
- http://www.x.org/wiki/Development/Security/Advisory-2013-05-23
More from x
View All →CVE-2015-1804
The bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont before 1.4.9...
High
8.5
CVE-2015-1802
The bdfReadProperties function in bitmap/bdfread.c in X.Org libXfont before 1.4.9...
High
8.5
CVE-2014-4910
Directory traversal vulnerability in tools/backlight_helper.c in X.Org xf86-video-intel 2.99.911 allows...
Medium
4.6
CVE-2014-0210
Multiple buffer overflows in X.Org libXfont before 1.4.8 and 1.4.9x...
High
7.5
CVE-2014-0209
Multiple integer overflows in the (1) FontFileAddEntry and (2) lexAlias...
Medium
4.6
Affected Vendor
Affected Software
libxcursor
Vulnerable Versions:
0, 1.1.6, 1.1.7, 1.1.8, 1.1.9, 1.1.10, 1.1.11, 1.1.12
Timeline
Official Publish:
June 15th, 2013
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.