Vulnerabilities > X ORG > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-07-27 CVE-2017-2625 It was discovered that libXdmcp before 1.1.2 including used weak entropy to generate session keys.
local
low complexity
x-org redhat
5.5
2017-10-10 CVE-2017-13721 Improper Privilege Management vulnerability in multiple products
In X.Org Server (aka xserver and xorg-server) before 1.19.4, an attacker authenticated to an X server with the X shared memory extension enabled can cause aborts of the X server or replace shared memory segments of other X clients in the same session.
local
high complexity
x-org debian CWE-269
4.7
2017-07-06 CVE-2017-10972 Improper Initialization vulnerability in X.Org Xorg-Server
Uninitialized data in endianness conversion in the XEvent handling of the X.Org X Server before 2017-06-19 allowed authenticated malicious users to access potentially privileged data from the X server.
network
low complexity
x-org CWE-665
6.5