Vulnerabilities
Vulnerable Software
X.org:  >> Libx11  >> 1.0.3  Security Vulnerabilities
The XListFonts function in X.org libX11 before 1.6.4 might allow remote X servers to gain privileges via vectors involving length fields, which trigger out-of-bounds write operations.
CVSS Score
9.8
EPSS Score
0.031
Published
2016-12-13
The XGetImage function in X.org libX11 before 1.6.4 might allow remote X servers to gain privileges via vectors involving image type and geometry, which triggers out-of-bounds read operations.
CVSS Score
9.8
EPSS Score
0.019
Published
2016-12-13
Multiple off-by-one errors in the (1) MakeBigReq and (2) SetReqLen macros in include/X11/Xlibint.h in X11R6.x and libX11 before 1.6.0 allow remote attackers to have unspecified impact via a crafted request, which triggers a buffer overflow.
CVSS Score
7.5
EPSS Score
0.021
Published
2015-04-16
The Xinput module (modules/im/ximcp/imLcIm.c) in X.Org libX11 1.0.2 and 1.0.3 opens a file for reading twice using the same file descriptor, which causes a file descriptor leak that allows local users to read files specified by the XCOMPOSEFILE environment variable via the duplicate file descriptor.
CVSS Score
2.1
EPSS Score
0.001
Published
2006-11-03


Contact Us

Shodan ® - All rights reserved