Search CVE reports


Toggle filters

11 – 20 of 25 results


CVE-2020-25697

Low priority
Ignored

A privilege escalation flaw was found in the Xorg-x11-server due to a lack of authentication for X11 clients. This flaw allows an attacker to take control of an X application by impersonating the server it is expecting to connect to.

1 affected package

libx11

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libx11 — — Ignored Ignored Ignored
Show less packages

CVE-2021-31535

Medium priority
Fixed

LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a client to...

1 affected package

libx11

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libx11 — — Fixed Fixed Fixed
Show less packages

CVE-2020-14363

Medium priority
Fixed

An integer overflow vulnerability leading to a double-free was found in libX11. This flaw allows a local privileged attacker to cause an application compiled with libX11 to crash, or in some cases, result in arbitrary code...

1 affected package

libx11

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libx11 — — — Fixed Fixed
Show less packages

CVE-2020-14344

Medium priority
Fixed

An integer overflow leading to a heap-buffer overflow was found in The X Input Method (XIM) client was implemented in libX11 before version 1.6.10. As per upstream this is security relevant when setuid programs call XIM client...

1 affected package

libx11

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libx11 — — — Fixed Fixed
Show less packages

CVE-2018-14600

Medium priority
Fixed

An issue was discovered in libX11 through 1.6.5. The function XListExtensions in ListExt.c interprets a variable as signed instead of unsigned, resulting in an out-of-bounds write (of up to 128 bytes), leading to DoS or remote...

1 affected package

libx11

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libx11 — — — — Fixed
Show less packages

CVE-2018-14599

Medium priority
Fixed

An issue was discovered in libX11 through 1.6.5. The function XListExtensions in ListExt.c is vulnerable to an off-by-one error caused by malicious server responses, leading to DoS or possibly unspecified other impact.

1 affected package

libx11

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libx11 — — — — Fixed
Show less packages

CVE-2018-14598

Medium priority
Fixed

An issue was discovered in XListExtensions in ListExt.c in libX11 through 1.6.5. A malicious server can send a reply in which the first string overflows, causing a variable to be set to NULL that will be freed later on, leading to...

1 affected package

libx11

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libx11 — — — — Fixed
Show less packages

CVE-2016-7943

Low priority

Some fixes available 3 of 7

The XListFonts function in X.org libX11 before 1.6.4 might allow remote X servers to gain privileges via vectors involving length fields, which trigger out-of-bounds write operations.

1 affected package

libx11

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libx11 — — — — Fixed
Show less packages

CVE-2016-7942

Low priority

Some fixes available 3 of 7

The XGetImage function in X.org libX11 before 1.6.4 might allow remote X servers to gain privileges via vectors involving image type and geometry, which triggers out-of-bounds read operations.

1 affected package

libx11

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libx11 — — — — Fixed
Show less packages

CVE-2013-7439

Medium priority

Some fixes available 4 of 6

Multiple off-by-one errors in the (1) MakeBigReq and (2) SetReqLen macros in include/X11/Xlibint.h in X11R6.x and libX11 before 1.6.0 allow remote attackers to have unspecified impact via a crafted request, which triggers a buffer...

2 affected packages

libx11, libxrender

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libx11 — — — — —
libxrender — — — — —
Show less packages