Errata overview
Errata ID 357
Date 2018-05-08
Source package libx11
Fixed in version 2:1.6.2-3+deb8u1
Description
This update addresses the following issues:
* The XGetImage function might allow remote X servers to gain privileges via
  vectors involving image type and geometry, which triggers out-of-bounds
  read operations. (CVE-2016-7942)
* The XListFonts function might allow remote X servers to gain privileges via
  vectors involving length fields, which trigger out-of-bounds write
  operations. (CVE-2016-7943)
Additional notes
CVE ID CVE-2016-7942
CVE-2016-7943
UCS Bug number #46142