Description: A vulnerability has been reported in X.org X11, which potentially can be exploited by malicious, local users to gain escalated privileges.
The vulnerability is caused due to a boundary error within the composite extension when copying data from pixmaps with different bit depths. This can be exploited to cause a buffer overflow by copying data between specially crafted pixmaps.
The vulnerability is reported in xorg-server prior to version 1.4. Other versions may also be affected.
Solution: Update to xorg-server 1.4.
Provided and/or discovered by: Reported in a bug by Aaron Plattner.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.