Description
XFree86 3.3.x and 4.0 allows a user to cause a denial of service via a negative counter value in a malformed TCP packet that is sent to port 6000.
Affected products
- xfree86_project / x11r63.3.5 – 3.3.5
- xfree86_project / x11r63.3.6 – 3.3.6
- xfree86_project / x11r64.0 – 4.0
Exploits & proofs of concept
- exploit-dbXFree86 X11R6 3.3.5/3.3.6/4.0 Xserver - Denial of Serviceby Chris Evans
Updated 21m ago · 8 sources