CVE-2014-8092
- EPSS 1.29%
- Veröffentlicht 10.12.2014 15:59:04
- Zuletzt bearbeitet 29.08.2025 13:42:30
Multiple integer overflows in X.Org X Window System (aka X11 or X) X11R1 and X.Org Server (aka xserver and xorg-server) before 1.16.3 allow remote authenticated users to cause a denial of service (crash) or possibly execute arbitrary code via a craft...
CVE-2014-8091
- EPSS 6.31%
- Veröffentlicht 10.12.2014 15:59:02
- Zuletzt bearbeitet 29.08.2025 13:42:30
X.Org X Window System (aka X11 and X) X11R5 and X.Org Server (aka xserver and xorg-server) before 1.16.3, when using SUN-DES-1 (Secure RPC) authentication credentials, does not check the return value of a malloc call, which allows remote attackers to...
- EPSS 2.15%
- Veröffentlicht 18.05.2012 22:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Format string vulnerability in the LogVHdrMessageVerb function in os/log.c in X.Org X11 1.11 allows attackers to cause a denial of service or possibly execute arbitrary code via format string specifiers in an input device name.
- EPSS 0.03%
- Veröffentlicht 08.09.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
xscreensaver (aka Gnome-XScreenSaver) in Sun Solaris 9 and 10, OpenSolaris snv_109 through snv_122, and X11 6.4.1 on Solaris 8 does not properly handle Accessibility support, which allows local users to cause a denial of service (system hang) by lock...
CVE-2009-2711
- EPSS 0.07%
- Veröffentlicht 07.08.2009 19:00:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
XScreenSaver in Sun Solaris 9 and 10, OpenSolaris before snv_120, and X11 6.4.1 for Solaris 8, when the Xorg or Xnewt server is used, allows physically proximate attackers to obtain sensitive information by reading popup windows, which are displayed ...
- EPSS 7.72%
- Veröffentlicht 06.04.2007 01:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer overflow in ALLOCATE_LOCAL in the ProcXCMiscGetXIDList function in the XC-MISC extension in the X.Org X11 server (xserver) 7.1-1.1.0, and other versions before 20070403, allows remote authenticated users to execute arbitrary code via a large ...
CVE-1999-0965
- EPSS 0.18%
- Veröffentlicht 19.09.1997 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Race condition in xterm allows local users to modify arbitrary files via the logging option.
- EPSS 79.1%
- Veröffentlicht 01.07.1997 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
An X server's access control is disabled (e.g. through an "xhost +" command) and allows anyone to connect to the server.