VendorsX.Orgx_serverany version
Vulnerabilities

X.Org X Server any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

86CVEs
CVE-2023-5380
Xorg-x11-server: use-after-free bug in destroywindow
Published 2023-10-25 · Modified
4.7EPSS 0.007
CVE-2017-13721
In X.Org Server (aka xserver and xorg-server) before 1.19.4, an attacker authenticated to an X server with the X shared memory extension enabled can cause aborts of the X server or replace shared memory segments of other X clients in the same session.
Published 2017-10-09 · Modified
4.7EPSS 0.004
CVE-2011-4613
The X.Org X wrapper (xserver-wrapper.c) in Debian GNU/Linux and Ubuntu Linux does not properly verify the TTY of a user who is starting X, which allows local users to bypass intended access restrictions by associating stdin with a file that is misinterpreted as the console TTY.
Published 2014-02-05 · Modified
4.61 PoCEPSS 0.009
CVE-2014-8091
X.Org X Window System (aka X11 and X) X11R5 and X.Org Server (aka xserver and xorg-server) before 1.16.3, when using SUN-DES-1 (Secure RPC) authentication credentials, does not check the return value of a malloc call, which allows remote attackers to cause a denial of service (NULL pointer dereference and server crash) via a crafted connection request.
Published 2014-12-10 · Modified
4.3EPSS 0.042
CVE-2011-4029
The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to change the permissions of arbitrary files to 444, read those files, and possibly cause a denial of service (removed execution permission) via a symlink attack on a temporary lock file.
Published 2012-07-03 · Modified
1.91 PoCEPSS 0.006
CVE-2011-4028
The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.
Published 2012-07-03 · Modified
1.2EPSS 0.004
← Prev3 / 3