Errata overview
Errata ID 363
Date 2018-05-08
Source package libxrandr
Fixed in version 2:1.4.2-1+deb8u1
Description
This update addresses the following issues:
* Multiple integer overflows in libXrandr allow remote X servers to trigger
  out-of-bounds write operations via a crafted response. (CVE-2016-7947)
* libXrandr allows remote X servers to trigger out-of-bounds write operations
  by leveraging mishandling of reply data. (CVE-2016-7948)
Additional notes
CVE ID CVE-2016-7947
CVE-2016-7948
UCS Bug number #46146