CVE-2016-7943
- EPSS 4.71%
- Veröffentlicht 13.12.2016 20:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
The XListFonts function in X.org libX11 before 1.6.4 might allow remote X servers to gain privileges via vectors involving length fields, which trigger out-of-bounds write operations.
CVE-2016-7942
- EPSS 3.16%
- Veröffentlicht 13.12.2016 20:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
The XGetImage function in X.org libX11 before 1.6.4 might allow remote X servers to gain privileges via vectors involving image type and geometry, which triggers out-of-bounds read operations.
CVE-2013-7439
- EPSS 1.88%
- Veröffentlicht 16.04.2015 14:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple off-by-one errors in the (1) MakeBigReq and (2) SetReqLen macros in include/X11/Xlibint.h in X11R6.x and libX11 before 1.6.0 allow remote attackers to have unspecified impact via a crafted request, which triggers a buffer overflow.
CVE-2007-1667
- EPSS 1.99%
- Veröffentlicht 24.03.2007 21:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple integer overflows in (1) the XGetPixel function in ImUtil.c in X.Org libx11 before 1.0.3, and (2) XInitImage function in xwd.c for ImageMagick, allow user-assisted remote attackers to cause a denial of service (crash) or obtain sensitive inf...
CVE-2006-5397
- EPSS 0.08%
- Veröffentlicht 03.11.2006 00:07:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Xinput module (modules/im/ximcp/imLcIm.c) in X.Org libX11 1.0.2 and 1.0.3 opens a file for reading twice using the same file descriptor, which causes a file descriptor leak that allows local users to read files specified by the XCOMPOSEFILE envir...