cbcvebase.

Debian Xorg-Server vulnerabilities

123 known vulnerabilities affecting debian/xorg-server.

Total CVEs
123
CISA KEV
0
Public exploits
5
Exploited in wild
2
Severity breakdown
CRITICAL20HIGH55MEDIUM35LOW13

Vulnerabilities

Page 5 of 7
CVE-2025-49176P3HIGHCVSS 7.3fixed in xorg-server 2:21.1.7-3+deb12u10 (bookworm)2025
CVE-2025-49176 [HIGH] CVE-2025-49176: xorg-server - A flaw was found in the Big Requests extension. The request length is multiplied... A flaw was found in the Big Requests extension. The request length is multiplied by 4 before checking against the maximum allowed size, potentially causing an integer overflow and bypassing the size check. Scope: local bookworm: resolved (fixed in 2:21.1.7-3+deb12u10) bullseye: resolved (fixed in 2:1.20.11-1+deb11u16) forky: resolved (fixed in 2:21.1.16-1.3) sid
debian
CVE-2014-8100P3MEDIUMCVSS 6.5fixed in xorg-server 2:1.16.2.901-1 (bookworm)2014
CVE-2014-8100 [MEDIUM] CVE-2014-8100: xorg-server - The Render extension in XFree86 4.0.1, X.Org X Window System (aka X11 or X) X11R... The Render extension in XFree86 4.0.1, X.Org X Window System (aka X11 or X) X11R6.7, and X.Org Server (aka xserver and xorg-server) before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length or index value to the (1) ProcRenderQueryVersion, (2) SProcRenderQuer
debian
CVE-2017-10972P3MEDIUMCVSS 6.5fixed in xorg-server 2:1.19.3-2 (bookworm)2017
CVE-2017-10972 [MEDIUM] CVE-2017-10972: xorg-server - Uninitialized data in endianness conversion in the XEvent handling of the X.Org ... Uninitialized data in endianness conversion in the XEvent handling of the X.Org X Server before 2017-06-19 allowed authenticated malicious users to access potentially privileged data from the X server. Scope: local bookworm: resolved (fixed in 2:1.19.3-2) bullseye: resolved (fixed in 2:1.19.3-2) forky: resolved (fixed in 2:1.19.3-2) sid: resolved (fixed in 2:1
debian
CVE-2014-8102P3MEDIUMCVSS 6.5fixed in xorg-server 2:1.16.2.901-1 (bookworm)2014
CVE-2014-8102 [MEDIUM] CVE-2014-8102: xorg-server - The SProcXFixesSelectSelectionInput function in the XFixes extension in X.Org X ... The SProcXFixesSelectSelectionInput function in the XFixes extension in X.Org X Window System (aka X11 or X) X11R6.8.0 and X.Org Server (aka xserver and xorg-server) before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length value. Scope: local bookworm: resol
debian
CVE-2014-8093P3MEDIUMCVSS 6.5fixed in xorg-server 2:1.16.2.901-1 (bookworm)2014
CVE-2014-8093 [MEDIUM] CVE-2014-8093: xorg-server - Multiple integer overflows in the GLX extension in XFree86 4.0, X.Org X Window S... Multiple integer overflows in the GLX extension in XFree86 4.0, X.Org X Window System (aka X11 or X) X11R6.7, and X.Org Server (aka xserver and xorg-server) before 1.16.3 allow remote authenticated users to cause a denial of service (crash) or possibly execute arbitrary code via a crafted request to the (1) __glXDisp_ReadPixels, (2) __glXDispSwap_ReadPixels, (3)
debian
CVE-2014-8101P3MEDIUMCVSS 6.5fixed in xorg-server 2:1.16.2.901-1 (bookworm)2014
CVE-2014-8101 [MEDIUM] CVE-2014-8101: xorg-server - The RandR extension in XFree86 4.2.0, X.Org X Window System (aka X11 or X) X11R6... The RandR extension in XFree86 4.2.0, X.Org X Window System (aka X11 or X) X11R6.7, and X.Org Server (aka xserver and xorg-server) before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length or index value to the (1) SProcRRQueryVersion, (2) SProcRRGetScreenInf
debian
CVE-2014-8092P3MEDIUMCVSS 6.5fixed in xorg-server 2:1.16.2.901-1 (bookworm)2014
CVE-2014-8092 [MEDIUM] CVE-2014-8092: xorg-server - Multiple integer overflows in X.Org X Window System (aka X11 or X) X11R1 and X.O... Multiple integer overflows in X.Org X Window System (aka X11 or X) X11R1 and X.Org Server (aka xserver and xorg-server) before 1.16.3 allow remote authenticated users to cause a denial of service (crash) or possibly execute arbitrary code via a crafted request to the (1) ProcPutImage, (2) GetHosts, (3) RegionSizeof, or (4) REQUEST_FIXED_SIZE function, which trig
debian
CVE-2017-13723P3HIGHCVSS 7.8fixed in xorg-server 2:1.19.4-1 (bookworm)2017
CVE-2017-13723 [HIGH] CVE-2017-13723: xorg-server - In X.Org Server (aka xserver and xorg-server) before 1.19.4, a local attacker au... In X.Org Server (aka xserver and xorg-server) before 1.19.4, a local attacker authenticated to the X server could overflow a global buffer, causing crashes of the X server or potentially other problems by injecting large or malformed XKB related atoms and accessing them via xkbcomp. Scope: local bookworm: resolved (fixed in 2:1.19.4-1) bullseye: resolved (fixed
debian
CVE-2014-8103P3MEDIUMCVSS 6.5fixed in xorg-server 2:1.16.2.901-1 (bookworm)2014
CVE-2014-8103 [MEDIUM] CVE-2014-8103: xorg-server - X.Org Server (aka xserver and xorg-server) 1.15.0 through 1.16.x before 1.16.3 a... X.Org Server (aka xserver and xorg-server) 1.15.0 through 1.16.x before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length or index value to the (1) sproc_dri3_query_version, (2) sproc_dri3_open, (3) sproc_dri3_pixmap_from_buffer, (4) sproc_dri3_buffer_from_p
debian
CVE-2015-3418P4HIGHCVSS 7.5fixed in xorg-server 2:1.16.4-1 (bookworm)2015
CVE-2015-3418 [HIGH] CVE-2015-3418: xorg-server - The ProcPutImage function in dix/dispatch.c in X.Org Server (aka xserver and xor... The ProcPutImage function in dix/dispatch.c in X.Org Server (aka xserver and xorg-server) before 1.16.4 allows attackers to cause a denial of service (divide-by-zero and crash) via a zero-height PutImage request. Scope: local bookworm: resolved (fixed in 2:1.16.4-1) bullseye: resolved (fixed in 2:1.16.4-1) forky: resolved (fixed in 2:1.16.4-1) sid: resolved (fixed
debian
CVE-2014-8096P4MEDIUMCVSS 6.5fixed in xorg-server 2:1.16.2.901-1 (bookworm)2014
CVE-2014-8096 [MEDIUM] CVE-2014-8096: xorg-server - The SProcXCMiscGetXIDList function in the XC-MISC extension in X.Org X Window Sy... The SProcXCMiscGetXIDList function in the XC-MISC extension in X.Org X Window System (aka X11 or X) X11R6.0 and X.Org Server (aka xserver and xorg-server) before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length or index value. Scope: local bookworm: resolve
debian
CVE-2014-8097P4MEDIUMCVSS 6.5fixed in xorg-server 2:1.16.2.901-1 (bookworm)2014
CVE-2014-8097 [MEDIUM] CVE-2014-8097: xorg-server - The DBE extension in X.Org X Window System (aka X11 or X) X11R6.1 and X.Org Serv... The DBE extension in X.Org X Window System (aka X11 or X) X11R6.1 and X.Org Server (aka xserver and xorg-server) before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length or index value to the (1) ProcDbeSwapBuffers or (2) SProcDbeSwapBuffers function. Scope:
debian
CVE-2014-8094P4MEDIUMCVSS 6.5fixed in xorg-server 2:1.16.2.901-1 (bookworm)2014
CVE-2014-8094 [MEDIUM] CVE-2014-8094: xorg-server - Integer overflow in the ProcDRI2GetBuffers function in the DRI2 extension in X.O... Integer overflow in the ProcDRI2GetBuffers function in the DRI2 extension in X.Org Server (aka xserver and xorg-server) 1.7.0 through 1.16.x before 1.16.3 allows remote authenticated users to cause a denial of service (crash) or possibly execute arbitrary code via a crafted request, which triggers an out-of-bounds read or write. Scope: local bookworm: resolved (
debian
CVE-2011-4029P4LOWCVSS 1.9PoCfixed in xorg-server 2:1.11.1.901-2 (bookworm)2011
CVE-2011-4029 [LOW] CVE-2011-4029: xorg-server - The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows loca... The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to change the permissions of arbitrary files to 444, read those files, and possibly cause a denial of service (removed execution permission) via a symlink attack on a temporary lock file. Scope: local bookworm: resolved (fixed in 2:1.11.1.901-2) bullseye: resolved (fixed in 2:1.
debian
CVE-2013-4396P4MEDIUMCVSS 6.5fixed in xorg-server 2:1.14.3-4 (bookworm)2013
CVE-2013-4396 [MEDIUM] CVE-2013-4396: xorg-server - Use-after-free vulnerability in the doImageText function in dix/dixfonts.c in th... Use-after-free vulnerability in the doImageText function in dix/dixfonts.c in the xorg-server module before 1.14.4 in X.Org X11 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted ImageText request that triggers memory-allocation failure. Scope: local bookworm: resolved (fixed in 2:1.14.3
debian
CVE-2022-3551P4LOWCVSS 3.5fixed in xorg-server 2:21.1.4-3 (bookworm)2022
CVE-2022-3551 [LOW] CVE-2022-3551: xorg-server - A vulnerability, which was classified as problematic, has been found in X.org Se... A vulnerability, which was classified as problematic, has been found in X.org Server. Affected by this issue is the function ProcXkbGetKbdByName of the file xkb/xkb.c. The manipulation leads to memory leak. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-211052. Scope: local bookworm: resolved (fixed in 2:21.1.4-3)
debian
CVE-2022-3553P4LOWCVSS 3.5fixed in xorg-server 2:21.1.4-1 (bookworm)2022
CVE-2022-3553 [LOW] CVE-2022-3553: xorg-server - A vulnerability, which was classified as problematic, was found in X.org Server.... A vulnerability, which was classified as problematic, was found in X.org Server. This affects an unknown part of the file hw/xquartz/X11Controller.m of the component xquartz. The manipulation leads to denial of service. It is recommended to apply a patch to fix this issue. The identifier VDB-211053 was assigned to this vulnerability. Scope: local bookworm: resolved
debian
CVE-2025-49177P4MEDIUMCVSS 6.1fixed in xorg-server 2:21.1.7-3+deb12u10 (bookworm)2025
CVE-2025-49177 [MEDIUM] CVE-2025-49177: xorg-server - A flaw was found in the XFIXES extension. The XFixesSetClientDisconnectMode hand... A flaw was found in the XFIXES extension. The XFixesSetClientDisconnectMode handler does not validate the request length, allowing a client to read unintended memory from previous requests. Scope: local bookworm: resolved (fixed in 2:21.1.7-3+deb12u10) bullseye: resolved forky: resolved (fixed in 2:21.1.16-1.2) sid: resolved (fixed in 2:21.1.16-1.2) trixie: re
debian
CVE-2015-0255P4MEDIUMCVSS 6.4fixed in xorg-server 2:1.16.4-1 (bookworm)2015
CVE-2015-0255 [MEDIUM] CVE-2015-0255: xorg-server - X.Org Server (aka xserver and xorg-server) before 1.16.3 and 1.17.x before 1.17.... X.Org Server (aka xserver and xorg-server) before 1.16.3 and 1.17.x before 1.17.1 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (crash) via a crafted string length value in a XkbSetGeometry request. Scope: local bookworm: resolved (fixed in 2:1.16.4-1) bullseye: resolved (fixed in 2:1.16.4-1) forky: reso
debian
CVE-2008-1379P4MEDIUMCVSS 6.8fixed in xorg-server 2:1.4.1~git20080517-2 (bookworm)2008
CVE-2008-1379 [MEDIUM] CVE-2008-1379: xorg-server - Integer overflow in the fbShmPutImage function in the MIT-SHM extension in the X... Integer overflow in the fbShmPutImage function in the MIT-SHM extension in the X server 1.4 in X.Org X11R7.3 allows context-dependent attackers to read arbitrary process memory via crafted values for a Pixmap width and height. Scope: local bookworm: resolved (fixed in 2:1.4.1~git20080517-2) bullseye: resolved (fixed in 2:1.4.1~git20080517-2) forky: resolved (fix
debian
Debian Xorg-Server vulnerabilities | cvebase