X.Org

X Server

83 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.1%
  • Published 15.09.2020 19:15:12
  • Last modified 29.08.2025 13:42:30

A flaw was found in X.Org Server before xorg-x11-server 1.20.9. An Integer underflow leading to heap-buffer overflow may lead to a privilege escalation vulnerability. The highest threat from this vulnerability is to data confidentiality and integrity...

  • EPSS 0.1%
  • Published 15.09.2020 19:15:12
  • Last modified 29.08.2025 13:42:30

A flaw was found in X.Org Server before xorg-x11-server 1.20.9. An Integer underflow leading to heap-buffer overflow may lead to a privilege escalation vulnerability. The highest threat from this vulnerability is to data confidentiality and integrity...

  • EPSS 0.06%
  • Published 15.09.2020 14:15:13
  • Last modified 21.11.2024 05:03:03

A flaw was found in X.Org Server before xorg-x11-server 1.20.9. An Out-Of-Bounds access in XkbSetNames function may lead to a privilege escalation vulnerability. The highest threat from this vulnerability is to data confidentiality and integrity as w...

  • EPSS 0.02%
  • Published 05.08.2020 14:15:12
  • Last modified 29.08.2025 13:42:30

A flaw was found in the way xserver memory was not properly initialized. This could leak parts of server memory to the X client. In cases where Xorg server runs with elevated privileges, this could result in possible ASLR bypass. Xorg-server before v...

Exploit
  • EPSS 16.23%
  • Published 16.10.2019 11:15:15
  • Last modified 21.11.2024 04:32:39

"" In X.Org X Server 1.20.4, there is a stack-based buffer overflow in the function XQueryKeymap. For example, by sending ct.c_char 1000 times, an attacker can cause a denial of service (application crash) or possibly have unspecified other impact. N...

Exploit
  • EPSS 3.8%
  • Published 25.10.2018 20:29:00
  • Last modified 29.08.2025 13:42:30

A flaw was found in xorg-x11-server before 1.20.3. An incorrect permission check for -modulepath and -logfile options when starting Xorg. X server allows unprivileged users with the ability to log in to the system via physical console to escalate the...

Exploit
  • EPSS 0.11%
  • Published 27.07.2018 18:29:00
  • Last modified 29.08.2025 13:42:30

It was found that xorg-x11-server before 1.19.0 including uses memcmp() to check the received MIT cookie against a series of valid cookies. If the cookie is correct, it is allowed to attach to the Xorg session. Since most memcmp() implementations ret...

  • EPSS 0.95%
  • Published 24.01.2018 15:29:00
  • Last modified 29.08.2025 13:42:30

xorg-x11-server before 1.19.5 was missing length validation in XFIXES extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

  • EPSS 0.95%
  • Published 24.01.2018 15:29:00
  • Last modified 29.08.2025 13:42:30

xorg-x11-server before 1.19.5 was missing extra length validation in ProcEstablishConnection function allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

  • EPSS 0.95%
  • Published 24.01.2018 15:29:00
  • Last modified 29.08.2025 13:42:30

xorg-x11-server before 1.19.5 was vulnerable to integer overflow in ProcDbeGetVisualInfo function allowing malicious X client to cause X server to crash or possibly execute arbitrary code.