Vulnerabilities > X

DATE CVE VULNERABILITY TITLE RISK
2013-06-15 CVE-2013-1990 Numeric Errors vulnerability in X Libxvmc
Multiple integer overflows in X.org libXvMC 1.0.7 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XvMCListSurfaceTypes and (2) XvMCListSubpictureTypes functions.
network
x CWE-189
6.8
2013-06-15 CVE-2013-1989 Numeric Errors vulnerability in X Libxv
Multiple integer overflows in X.org libXv 1.0.7 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XvQueryPortAttributes, (2) XvListImageFormats, and (3) XvCreateImage function.
network
x CWE-189
6.8
2013-06-15 CVE-2013-1988 Numeric Errors vulnerability in X Libxres
Multiple integer overflows in X.org libXRes 1.0.6 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XResQueryClients and (2) XResQueryClientResources functions.
network
x CWE-189
6.8
2013-06-15 CVE-2013-1987 Numeric Errors vulnerability in multiple products
Multiple integer overflows in X.org libXrender 0.9.7 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XRenderQueryFilters, (2) XRenderQueryFormats, and (3) XRenderQueryPictIndexValues functions.
6.8
2013-06-15 CVE-2013-1986 Numeric Errors vulnerability in X Libxrandr
Multiple integer overflows in X.org libXrandr 1.4.0 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XRRQueryOutputProperty and (2) XRRQueryProviderProperty functions.
network
x CWE-189
6.8
2013-06-15 CVE-2013-1985 Improper Input Validation vulnerability in X Libxinerama
Integer overflow in X.org libXinerama 1.1.2 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the XineramaQueryScreens function.
network
x CWE-20
6.8
2013-06-15 CVE-2013-1983 Numeric Errors vulnerability in X Libxfixes
Integer overflow in X.org libXfixes 5.0 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the XFixesGetCursorImage function.
network
x CWE-189
6.8
2013-06-15 CVE-2013-1982 Numeric Errors vulnerability in X Libxext
Multiple integer overflows in X.org libXext 1.3.1 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XcupGetReservedColormapEntries, (2) XcupStoreColors, (3) XdbeGetVisualInfo, (4) XeviGetVisualInfo, (5) XShapeGetRectangles, and (6) XSyncListSystemCounters functions.
network
x CWE-189
6.8
2013-06-15 CVE-2013-1981 Numeric Errors vulnerability in multiple products
Multiple integer overflows in X.org libX11 1.5.99.901 (1.6 RC1) and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XQueryFont, (2) _XF86BigfontQueryFont, (3) XListFontsWithInfo, (4) XGetMotionEvents, (5) XListHosts, (6) XGetModifierMapping, (7) XGetPointerMapping, (8) XGetKeyboardMapping, (9) XGetWindowProperty, (10) XGetImage, (11) LoadColornameDB, (12) XrmGetFileDatabase, (13) _XimParseStringFile, or (14) TransFileName functions.
network
x canonical CWE-189
6.8
2013-05-13 CVE-2013-1940 Permissions, Privileges, and Access Controls vulnerability in multiple products
X.Org X server before 1.13.4 and 1.4.x before 1.14.1 does not properly restrict access to input events when adding a new hot-plug device, which might allow physically proximate attackers to obtain sensitive information, as demonstrated by reading passwords from a tty.
local
low complexity
x canonical CWE-264
2.1