VendorsX.Orgxwaylandall versions
Vulnerabilities

X.Org Xwayland

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

29CVEs
CVE-2023-6816
Xorg-x11-server: heap buffer overflow in devicefocusevent and procxiquerypointer
Published 2024-01-18 · Modified
9.8EPSS 0.021
CVE-2026-56000
xorg-x11-server / xwayland GLX contextTags Use-After-Free in CommonMakeCurrent()
Published 2026-07-08 · Analyzed
9.0EPSS 0.003
CVE-2026-55999
xorg-server / xwayland glamor font atlas Heap Buffer Overflow
Published 2026-07-08 · Analyzed
8.5EPSS 0.003
CVE-2023-6377
Xorg-x11-server: out-of-bounds memory reads/writes in xkb button actions
Published 2023-12-13 · Modified
7.8EPSS 0.016
CVE-2024-0229
Xorg-x11-server: reattaching to different master device may lead to out-of-bounds memory access
Published 2024-02-09 · Modified
7.8EPSS 0.012
CVE-2023-5367
Xorg-x11-server: out-of-bounds write in xichangedeviceproperty/rrchangeoutputproperty
Published 2023-10-25 · Modified
7.8EPSS 0.006
CVE-2025-26597
Xorg: xwayland: buffer overflow in xkbchangetypesofkey()
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2025-26595
Xorg: xwayland: buffer overflow in xkbvmodmasktext()
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2025-26596
Xorg: xwayland: heap overflow in xkbwritekeysyms()
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2025-26599
Xorg: xwayland: use of uninitialized pointer in compredirectwindow()
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2025-26598
Xorg: xwayland: out-of-bounds write in createpointerbarrierclient()
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2025-26600
Xorg: xwayland: use-after-free in playreleasedevents()
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2025-26601
Xorg: xwayland: use-after-free in syncinittrigger()
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2025-26594
X.org: xwayland: use-after-free of the root cursor
Published 2025-02-25 · Modified
7.8EPSS 0.004
CVE-2024-0409
Xorg-x11-server: selinux context corruption
Published 2024-01-18 · Modified
7.8EPSS 0.004
CVE-2026-50258
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb key types due to unchecked shift levels
Published 2026-06-05 · Modified
7.8EPSS 0.002
CVE-2026-50259
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb setmap request via mapwidths indexing
Published 2026-06-05 · Modified
7.8EPSS 0.002
CVE-2026-50256
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in font alias resolution due to libxfont2 name length mismatch
Published 2026-06-05 · Modified
7.8EPSS 0.002
CVE-2026-50264
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: out-of-bounds heap write in dri2 drigetbuffers/drigetbufferswithformat
Published 2026-06-05 · Modified
7.8EPSS 0.002
CVE-2026-50257
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in misyncdestroyfence()
Published 2026-06-05 · Modified
7.8EPSS 0.002
CVE-2026-50260
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in freecounter()
Published 2026-06-05 · Modified
7.8EPSS 0.002
CVE-2026-50261
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in syncchangecounter()
Published 2026-06-05 · Modified
7.8EPSS 0.002
CVE-2023-6478
Xorg-x11-server: out-of-bounds memory read in rrchangeoutputproperty and rrchangeproviderproperty
Published 2023-12-13 · Modified
7.6EPSS 0.016
CVE-2025-62231
Xorg: xmayland: value overflow in xkbsetcompatmap()
Published 2025-10-30 · Analyzed
7.3EPSS 0.003
CVE-2025-62230
Xorg: xwayland: use-after-free in xkb client resource removal
Published 2025-10-30 · Analyzed
7.3EPSS 0.003
CVE-2024-0408
Xorg-x11-server: selinux unlabeled glx pbuffer
Published 2024-01-18 · Modified
5.5EPSS 0.003
CVE-2026-50263
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free information disclosure in createsaverwindow()
Published 2026-06-05 · Modified
5.5EPSS 0.002
CVE-2026-50262
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: out-of-bounds read/write in glx changedrawableattributes
Published 2026-06-05 · Modified
5.5EPSS 0.002
CVE-2023-5380
Xorg-x11-server: use-after-free bug in destroywindow
Published 2023-10-25 · Modified
4.7EPSS 0.007