X.org composite extension buffer overflow
Published Sep 11, 2007
4.3
MEDIUMCVSS 2.0
EPSS 0.51%
Description
Buffer overflow in the compNewPixmap function in compalloc.c in the Composite extension for the X.org X11 server before 1.4 allows local users to execute arbitrary code by copying data from a large pixel depth pixmap into a smaller pixel depth pixmap.
Affected products
No data.
- 1.01
- 1.1
- 1.02
- 1.2
- 1.3
No data.
Red Hat Enterprise Linux 4
xorg-x11-0:6.8.2-1.EL.31
Fixed · RHSA-2007:0898
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 4 | xorg-x11-0:6.8.2-1.EL.31 | Fixed | RHSA-2007:0898 |
No package ranges for this CVE.
Remediation
Red Hat statement
Red Hat Enterprise Linux 5 is not affected by this flaw. More information can be found here: https://bugzilla.redhat.com/show_bug.cgi?id=285991 Red Hat Enterprise Linux 2.1 and 3 do not support the composite extension and are not vulnerable to this flaw.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:L/AC:L/Au:S/C:P/I:P/A:P
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (9 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 0.51% (0.00511) | 41.42th | v5 (v2026.06.15) |
| Jun 15, 2026 | 0.51% (0.00511) | 39.28th | v5 (v2026.06.15) |
| Mar 17, 2025 | 0.09% (0.00086) | 22.69th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.08% (0.00077) | 34.89th | v3 (v2023.03.01) |
| May 7, 2024 | 0.05% (0.00046) | 16.07th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.05% (0.00046) | 14.05th | v3 (v2023.03.01) |
| Mar 6, 2023 | 2.17% (0.02172) | 80.27th | v2 (v2022.01.01) |
| Apr 1, 2022 | 2.17% (0.02172) | 78.34th | v2 (v2022.01.01) |
| Feb 4, 2022 | 2.17% (0.02172) | 57.15th | v2 (v2022.01.01) |
References (34)
- http://bugs.freedesktop.org/show_bug.cgi?id=7447 x_refsource_CONFIRM
- http://bugs.gentoo.org/show_bug.cgi?id=191964 x_refsource_CONFIRM
- http://lists.freedesktop.org/archives/xorg-announce/2007-September/000378.html mailing-listx_refsource_MLIST
- http://osvdb.org/37726 vdb-entryx_refsource_OSVDB
- http://secunia.com/advisories/26743 third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory
- http://secunia.com/advisories/26755 third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory
- http://secunia.com/advisories/26763 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26823 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26859 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/26897 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/27147 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/27179 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/27228 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/30161 third-party-advisoryx_refsource_SECUNIA
- http://security.gentoo.org/glsa/glsa-200710-16.xml vendor-advisoryx_refsource_GENTOO
- http://support.avaya.com/elmodocs2/security/ASA-2007-394.htm x_refsource_CONFIRM
- http://wiki.rpath.com/wiki/Advisories:rPSA-2007-0187 x_refsource_CONFIRM
- http://www.debian.org/security/2007/dsa-1372 vendor-advisoryx_refsource_DEBIANPatch
- http://www.gentoo.org/security/en/glsa/glsa-200805-07.xml vendor-advisoryx_refsource_GENTOO
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:178 vendor-advisoryx_refsource_MANDRIVA
- http://www.mandriva.com/security/advisories?name=MDVSA-2008:022 vendor-advisoryx_refsource_MANDRIVA
- http://www.novell.com/linux/security/advisories/2007_54_xorg.html vendor-advisoryx_refsource_SUSE
- http://www.redhat.com/support/errata/RHSA-2007-0898.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/bid/25606 vdb-entryx_refsource_BID
- http://www.securitytracker.com/id?1018665 vdb-entryx_refsource_SECTRACK
- http://www.ubuntu.com/usn/usn-514-1 vendor-advisoryx_refsource_UBUNTU
- http://www.vupen.com/english/advisories/2007/3098 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2007-4730 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=285991 Issue Tracking
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36535 vdb-entryx_refsource_XF
- https://issues.rpath.com/browse/RPL-1728 x_refsource_CONFIRM
- https://nvd.nist.gov/vuln/detail/CVE-2007-4730
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10430 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2007-4730
Change history (0)
No recorded changes yet.