X.Org Xorg-Server vulnerabilities
124 known vulnerabilities affecting x.org/xorg-server.
Total CVEs
124
CISA KEV
0
Public exploits
5
Exploited in wild
1
Severity breakdown
CRITICAL21HIGH58MEDIUM38LOW7
Vulnerabilities
Page 5 of 7
CVE-2014-8101MEDIUMCVSS 6.5≥ 0, < 2:1.16.2.901-12014-12-10
CVE-2014-8101 [MEDIUM] CVE-2014-8101: The RandR extension in XFree86 4
The RandR extension in XFree86 4.2.0, X.Org X Window System (aka X11 or X) X11R6.7, and X.Org Server (aka xserver and xorg-server) before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length or index value to the (1) SProcRRQueryVersion, (2) SProcRRGetScreenInfo, (3) SProcRRSelectInput, or (4) SProcRRConfigureOutputProperty
osv
CVE-2014-8099MEDIUMCVSS 6.5≥ 0, < 2:1.16.2.901-12014-12-10
CVE-2014-8099 [MEDIUM] CVE-2014-8099: The XVideo extension in XFree86 4
The XVideo extension in XFree86 4.0.0, X.Org X Window System (aka X11 or X) X11R6.7, and X.Org Server (aka xserver and xorg-server) before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length or index value to the (1) SProcXvQueryExtension, (2) SProcXvQueryAdaptors, (3) SProcXvQueryEncodings, (4) SProcXvGrabPort, (5) SProcX
osv
CVE-2014-8102MEDIUMCVSS 6.5≥ 0, < 2:1.16.2.901-12014-12-10
CVE-2014-8102 [MEDIUM] CVE-2014-8102: The SProcXFixesSelectSelectionInput function in the XFixes extension in X
The SProcXFixesSelectSelectionInput function in the XFixes extension in X.Org X Window System (aka X11 or X) X11R6.8.0 and X.Org Server (aka xserver and xorg-server) before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length value.
osv
CVE-2014-8103MEDIUMCVSS 6.5≥ 0, < 2:1.16.2.901-12014-12-10
CVE-2014-8103 [MEDIUM] CVE-2014-8103: X
X.Org Server (aka xserver and xorg-server) 1.15.0 through 1.16.x before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length or index value to the (1) sproc_dri3_query_version, (2) sproc_dri3_open, (3) sproc_dri3_pixmap_from_buffer, (4) sproc_dri3_buffer_from_pixmap, (5) sproc_dri3_fence_from_fd, (6) sproc_dri3_fd_from_fence, (7) proc_present_query_capabi
osv
CVE-2014-8100MEDIUMCVSS 6.5≥ 0, < 2:1.16.2.901-12014-12-10
CVE-2014-8100 [MEDIUM] CVE-2014-8100: The Render extension in XFree86 4
The Render extension in XFree86 4.0.1, X.Org X Window System (aka X11 or X) X11R6.7, and X.Org Server (aka xserver and xorg-server) before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length or index value to the (1) ProcRenderQueryVersion, (2) SProcRenderQueryVersion, (3) SProcRenderQueryPictFormats, (4) SProcRenderQueryP
osv
CVE-2014-8098MEDIUMCVSS 6.5≥ 0, < 2:1.16.2.901-12014-12-10
CVE-2014-8098 [MEDIUM] CVE-2014-8098: The GLX extension in XFree86 4
The GLX extension in XFree86 4.0, X.Org X Window System (aka X11 or X) X11R6.7, and X.Org Server (aka xserver and xorg-server) before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length or index value to the (1) __glXDisp_Render, (2) __glXDisp_RenderLarge, (3) __glXDispSwap_VendorPrivate, (4) __glXDispSwap_VendorPrivateWithRe
osv
CVE-2014-8093MEDIUMCVSS 6.5≥ 0, < 2:1.16.2.901-12014-12-10
CVE-2014-8093 [MEDIUM] CVE-2014-8093: Multiple integer overflows in the GLX extension in XFree86 4
Multiple integer overflows in the GLX extension in XFree86 4.0, X.Org X Window System (aka X11 or X) X11R6.7, and X.Org Server (aka xserver and xorg-server) before 1.16.3 allow remote authenticated users to cause a denial of service (crash) or possibly execute arbitrary code via a crafted request to the (1) __glXDisp_ReadPixels, (2) __glXDispSwap_ReadPixels, (3) __glXDisp_GetTexImage, (4) __glXDisp
osv
CVE-2014-8097MEDIUMCVSS 6.5≥ 0, < 2:1.16.2.901-12014-12-10
CVE-2014-8097 [MEDIUM] CVE-2014-8097: The DBE extension in X
The DBE extension in X.Org X Window System (aka X11 or X) X11R6.1 and X.Org Server (aka xserver and xorg-server) before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length or index value to the (1) ProcDbeSwapBuffers or (2) SProcDbeSwapBuffers function.
osv
CVE-2014-8096MEDIUMCVSS 6.5≥ 0, < 2:1.16.2.901-12014-12-10
CVE-2014-8096 [MEDIUM] CVE-2014-8096: The SProcXCMiscGetXIDList function in the XC-MISC extension in X
The SProcXCMiscGetXIDList function in the XC-MISC extension in X.Org X Window System (aka X11 or X) X11R6.0 and X.Org Server (aka xserver and xorg-server) before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length or index value.
osv
CVE-2014-8094MEDIUMCVSS 6.5≥ 0, < 2:1.16.2.901-12014-12-10
CVE-2014-8094 [MEDIUM] CVE-2014-8094: Integer overflow in the ProcDRI2GetBuffers function in the DRI2 extension in X
Integer overflow in the ProcDRI2GetBuffers function in the DRI2 extension in X.Org Server (aka xserver and xorg-server) 1.7.0 through 1.16.x before 1.16.3 allows remote authenticated users to cause a denial of service (crash) or possibly execute arbitrary code via a crafted request, which triggers an out-of-bounds read or write.
osv
CVE-2014-8091MEDIUMCVSS 4.3≥ 0, < 2:1.16.2.901-12014-12-10
CVE-2014-8091 [MEDIUM] CVE-2014-8091: X
X.Org X Window System (aka X11 and X) X11R5 and X.Org Server (aka xserver and xorg-server) before 1.16.3, when using SUN-DES-1 (Secure RPC) authentication credentials, does not check the return value of a malloc call, which allows remote attackers to cause a denial of service (NULL pointer dereference and server crash) via a crafted connection request.
osv
CVE-2014-8095MEDIUMCVSS 6.5≥ 0, < 2:1.16.2.901-12014-12-10
CVE-2014-8095 [MEDIUM] CVE-2014-8095: The XInput extension in X
The XInput extension in X.Org X Window System (aka X11 or X) X11R4 and X.Org Server (aka xserver and xorg-server) before 1.16.3 allows remote authenticated users to cause a denial of service (out-of-bounds read or write) or possibly execute arbitrary code via a crafted length or index value to the (1) SProcXChangeDeviceControl, (2) ProcXChangeDeviceControl, (3) ProcXChangeFeedbackControl, (4) ProcXSendExtensionEvent, (5) SProcXIAllo
osv
CVE-2012-0064MEDIUMCVSS 4.6≥ 0, < 2:1.11.3.901-22014-02-10
CVE-2012-0064 [MEDIUM] CVE-2012-0064: xkeyboard-config before 2
xkeyboard-config before 2.5 in X.Org before 7.6 enables certain XKB debugging functions by default, which allows physically proximate attackers to bypass an X screen lock via keyboard combinations that break the input grab.
osv
CVE-2013-6424MEDIUMCVSS 5.0≥ 0, < 2:1.14.2.901-12014-01-18
CVE-2013-6424 [MEDIUM] CVE-2013-6424: Integer underflow in the xTrapezoidValid macro in render/picture
Integer underflow in the xTrapezoidValid macro in render/picture.h in X.Org allows context-dependent attackers to cause a denial of service (crash) via a negative bottom value.
osv
CVE-2013-1056LOWCVSS 1.9≥ 0, < 2:1.14.4-1ubuntu22013-10-16
CVE-2013-1056 [LOW] CVE-2013-1056: X
X.org X server 1.13.3 and earlier, when not run as root, allows local users to cause a denial of service (crash) or possibly gain privileges via vectors involving cached xkb files.
osv
CVE-2013-4396MEDIUMCVSS 6.5≥ 0, < 2:1.14.3-42013-10-10
CVE-2013-4396 [MEDIUM] CVE-2013-4396: Use-after-free vulnerability in the doImageText function in dix/dixfonts
Use-after-free vulnerability in the doImageText function in dix/dixfonts.c in the xorg-server module before 1.14.4 in X.Org X11 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted ImageText request that triggers memory-allocation failure.
osv
CVE-2013-1940LOWCVSS 2.1≥ 0, < 2:1.12.4-62013-05-13
CVE-2013-1940 [LOW] CVE-2013-1940: X
X.Org X server before 1.13.4 and 1.4.x before 1.14.1 does not properly restrict access to input events when adding a new hot-plug device, which might allow physically proximate attackers to obtain sensitive information, as demonstrated by reading passwords from a tty.
osv
CVE-2010-4818HIGHCVSS 8.5≥ 0, < 2:1.9.99.902-12012-09-05
CVE-2010-4818 [HIGH] CVE-2010-4818: The GLX extension in X
The GLX extension in X.Org xserver 1.7.7 allows remote authenticated users to cause a denial of service (server crash) and possibly execute arbitrary code via (1) a crafted request that triggers a client swap in glx/glxcmdsswap.c; or (2) a crafted length or (3) a negative value in the screen field in a request to glx/glxcmds.c.
osv
CVE-2010-4819LOWCVSS 3.6≥ 0, < 2:1.9.0.901-12012-09-05
CVE-2010-4819 [LOW] CVE-2010-4819: The ProcRenderAddGlyphs function in the Render extension (render/render
The ProcRenderAddGlyphs function in the Render extension (render/render.c) in X.Org xserver 1.7.7 and earlier allows local users to read arbitrary memory and possibly cause a denial of service (server crash) via unspecified vectors related to an "input sanitization flaw."
osv
CVE-2011-4028LOWCVSS 1.2≥ 0, < 2:1.11.1.901-22012-07-03
CVE-2011-4028 [LOW] CVE-2011-4028: The LockServer function in os/utils
The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.
osv