Search CVE reports
81 – 90 of 134 results
CVE-2013-6424
Low prioritySome fixes available 1 of 4
Integer underflow in the xTrapezoidValid macro in render/picture.h in X.Org allows context-dependent attackers to cause a denial of service (crash) via a negative bottom value.
2 affected packages
xorg, xorg-server
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
xorg | — | — | — | — | — |
xorg-server | — | — | — | — | — |
CVE-2013-1056
Low prioritySome fixes available 6 of 8
X.org X server 1.13.3 and earlier, when not run as root, allows local users to cause a denial of service (crash) or possibly gain privileges via vectors involving cached xkb files.
3 affected packages
xorg-server, xorg-server-lts-quantal, xorg-server-lts-raring
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
xorg-server | — | — | — | — | — |
xorg-server-lts-quantal | — | — | — | — | — |
xorg-server-lts-raring | — | — | — | — | — |
CVE-2013-4396
Medium prioritySome fixes available 5 of 6
Use-after-free vulnerability in the doImageText function in dix/dixfonts.c in the xorg-server module before 1.14.4 in X.Org X11 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute...
3 affected packages
xorg-server, xorg-server-lts-quantal, xorg-server-lts-raring
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
xorg-server | — | — | — | — | — |
xorg-server-lts-quantal | — | — | — | — | — |
xorg-server-lts-raring | — | — | — | — | — |
CVE-2013-1994
Medium prioritySome fixes available 4 of 5
Multiple integer overflows in X.org libchromeXvMC and libchromeXvMCPro in openChrome 0.3.2 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the...
2 affected packages
xserver-xorg-video-openchrome, xserver-xorg-video-openchrome-lts-quantal
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
xserver-xorg-video-openchrome | — | — | — | — | — |
xserver-xorg-video-openchrome-lts-quantal | — | — | — | — | — |
CVE-2013-1940
Medium prioritySome fixes available 5 of 6
X.Org X server before 1.13.4 and 1.4.x before 1.14.1 does not properly restrict access to input events when adding a new hot-plug device, which might allow physically proximate attackers to obtain sensitive information, as...
2 affected packages
xorg-server, xorg-server-lts-quantal
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
xorg-server | — | — | — | — | — |
xorg-server-lts-quantal | — | — | — | — | — |
CVE-2013-0241
Medium priorityThe QXL display driver in QXL Virtual GPU 0.1.0 allows local users to cause a denial of service (guest crash or hang) via a SPICE connection that prevents other threads from obtaining the qemu_mutex mutex. NOTE: some of these...
1 affected packages
xserver-xorg-video-qxl
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
xserver-xorg-video-qxl | — | — | — | — | — |
CVE-2012-2118
Low priorityFormat string vulnerability in the LogVHdrMessageVerb function in os/log.c in X.Org X11 1.11 allows attackers to cause a denial of service or possibly execute arbitrary code via format string specifiers in an input device name.
1 affected packages
xorg-server
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
xorg-server | — | — | — | — | — |
CVE-2011-4818
Low priorityOpen redirect vulnerability in IBM Maximo Asset Management and Asset Management Essentials 6.2, 7.1, and 7.5 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via the...
1 affected packages
xorg-server
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
xorg-server | — | — | — | — | — |
CVE-2011-4613
Medium prioritySome fixes available 4 of 5
The X.Org X wrapper (xserver-wrapper.c) in Debian GNU/Linux and Ubuntu Linux does not properly verify the TTY of a user who is starting X, which allows local users to bypass intended access restrictions by associating stdin with a...
1 affected packages
xorg
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
xorg | — | — | — | — | — |
CVE-2011-4029
High prioritySome fixes available 4 of 5
The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to change the permissions of arbitrary files to 444, read those files, and possibly cause a denial of service (removed execution permission)...
1 affected packages
xorg-server
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
xorg-server | — | — | — | — | — |