Hash: SHA256

Package        : libxcursor
Version        : 1:1.1.13-1+deb7u2
CVE ID         : CVE-2017-16612
Debian Bug     : 883792

It was discovered that libXcursor, a X cursor management library, is
prone to several heap overflows when parsing malicious files. An
attacker can take advantage of these flaws for arbitrary code execution,
if a user is tricked into processing a specially crafted cursor file.

For Debian 7 "Wheezy", these problems have been fixed in version

We recommend that you upgrade your libxcursor packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS

Debian LTS: DLA-1201-1: libxcursor security update

December 10, 2017
It was discovered that libXcursor, a X cursor management library, is prone to several heap overflows when parsing malicious files


For Debian 7 "Wheezy", these problems have been fixed in version

We recommend that you upgrade your libxcursor packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS

Package : libxcursor
Version : 1:1.1.13-1+deb7u2
CVE ID : CVE-2017-16612
Debian Bug : 883792

Related News