x records
55 published records for vendor x.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 12
- With a fix record
- 96.4%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-189 Numeric Errors25
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer15
- CWE-20 Improper Input Validation3
- CWE-122 Heap-based Buffer Overflow3
- CWE-264 Permissions, Privileges, and Access Controls2
- CWE-125 Out-of-bounds Read1
The weakness classes this vendor ships most often: where to look.
CWEAll records
55 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2015-9262No exploit | _XcursorThemeInherits in library.c in libXcursor before 1.1.15 allows remote attackers to cause denial of service or potentially code executx · libxcursor · CWE-119 | Critical9.8 | — | 5.7% | Aug 1, 2018 |
41Plan | CVE-2008-2362No exploit | Multiple integer overflows in the Render extension in the X server 1.4 in X.Org X11R7.3 allow context-dependent attackers to execute arbitrax · x11 · CWE-189 | Critical10.0 | — | 3.6% | Jun 16, 2008 |
40Plan | CVE-2013-6462No exploit | Stack-based buffer overflow in the bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont 1.1 through 1.4.6 allows remote attackerx · libxfont · CWE-119 | Critical9.3 | — | 10.3% | Jan 9, 2014 |
40Plan | CVE-2011-2895No exploit | The LZW decompressor in (1) the BufCompressedFill function in fontfile/decompress.c in X.Org libXfont before 1.4.4 and (2) compress/compressx · libxfont · CWE-119 | Critical9.3 | — | 8.4% | Aug 19, 2011 |
40Plan | CVE-2016-7951No exploit | Multiple integer overflows in X.org libXtst before 1.2.3 allow remote X servers to trigger out-of-bounds memory access operations by leveragx · libxtst · CWE-125 | Critical9.8 | — | 2.4% | Dec 13, 2016 |
40Plan | CVE-2007-5199No exploit | A single byte overflow in catalogue.c in X.Org libXfont 1.3.1 allows remote attackers to have unspecified impact.x · libxfont · CWE-119 | Critical9.8 | — | 2.2% | Aug 18, 2017 |
39Monitor | CVE-2011-0465No exploit | xrdb.c in xrdb before 1.0.9 in X.Org X11R7.6 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in ax · x11 · CWE-20 | Critical9.3 | — | 5.8% | Apr 8, 2011 |
37Monitor | CVE-2008-2360No exploit | Integer overflow in the AllocateGlyph function in the Render extension in the X server 1.4 in X.Org X11R7.3 allows context-dependent attackex · x11 · CWE-189 | Critical9.0 | — | 3.2% | Jun 16, 2008 |
37Monitor | CVE-2008-1377No exploit | The (1) SProcRecordCreateContext and (2) SProcRecordRegisterClients functions in the Record extension and the (3) SProcSecurityGenerateAuthox · x11 · CWE-189 | Critical9.0 | — | 2.7% | Jun 16, 2008 |
35Monitor | CVE-2015-1804No exploit | The bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 does not properly perform type convx · libxfont · CWE-189 | High8.5 | — | 5.0% | Mar 20, 2015 |
35Monitor | CVE-2015-1802No exploit | The bdfReadProperties function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 allows remote authenticated users tx · libxfont · CWE-119 | High8.5 | — | 4.9% | Mar 20, 2015 |
35Monitor | CVE-2015-1803No exploit | The bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 does not properly handle character x · libxfont | High8.5 | — | 4.9% | Mar 20, 2015 |
35Monitor | CVE-2026-56001No exploit | libXfont2 BitmapScaleBitmaps Integer Overflow Heap Buffer Overflowx · libxfont · CWE-122 | High8.8 | — | 0.6% | Jul 8, 2026 |
35Monitor | CVE-2026-56003No exploit | libXfont2 computeProps Property Buffer Heap Buffer Overflowx · libxfont · CWE-122 | High8.8 | — | 0.6% | Jul 8, 2026 |
35Monitor | CVE-2026-56002No exploit | libXfont2 PCF Font Parsing Heap Buffer Overflowx · libxfont · CWE-122 | High8.8 | — | 0.6% | Jul 8, 2026 |
32Monitor | CVE-2017-16612No exploit | libXcursor before 1.1.15 has various integer overflows that could lead to heap buffer overflows when processing malicious cursors, e.g., witx · libxcursor · CWE-190 | High7.5 | — | 5.2% | Dec 1, 2017 |
31Monitor | CVE-2014-0210No exploit | Multiple buffer overflows in X.Org libXfont before 1.4.8 and 1.4.9x before 1.4.99.901 allow remote font servers to execute arbitrary code vix · libxfont · CWE-119 | High7.5 | — | 4.5% | May 15, 2014 |
31Monitor | CVE-2014-0211No exploit | Multiple integer overflows in the (1) fs_get_reply, (2) fs_alloc_glyphs, and (3) fs_read_extent_info functions in X.Org libXfont before 1.4.x · libxfont · CWE-189 | High7.5 | — | 4.4% | May 15, 2014 |
30Monitor | CVE-2010-1166No exploit | The fbComposite function in fbpict.c in the Render extension in the X server in X.Org X11R7.1 allows remote authenticated users to cause a dx · x.org · CWE-189 | High7.1 | — | 5.4% | Apr 29, 2010 |
28Monitor | CVE-2013-2002No exploit | Buffer overflow in X.org libXt 1.1.3 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code vx · libxt · CWE-189 | Medium6.8 | — | 3.1% | Jun 15, 2013 |
28Monitor | CVE-2013-2001No exploit | Buffer overflow in X.org libXxf86vm 1.1.2 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary cx · libxxf86vm · CWE-119 | Medium6.8 | — | 2.7% | Jun 15, 2013 |
28Monitor | CVE-2013-1993No exploit | Multiple integer overflows in X.org libGLX in Mesa 9.1.1 and earlier allow X servers to trigger allocation of insufficient memory and a buffx · libglx · CWE-189 | Medium6.8 | — | 2.7% | Jun 15, 2013 |
28Monitor | CVE-2013-2064No exploit | Integer overflow in X.org libxcb 1.9 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vecx · libxcb · CWE-189 | Medium6.8 | — | 2.5% | Jun 15, 2013 |
28Monitor | CVE-2013-2066No exploit | Buffer overflow in X.org libXv 1.0.7 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code vx · libxv · CWE-119 | Medium6.8 | — | 2.3% | Jun 15, 2013 |
28Monitor | CVE-2013-1999No exploit | Buffer overflow in X.org libXvMC 1.0.7 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary codex · libxvmc · CWE-119 | Medium6.8 | — | 2.3% | Jun 15, 2013 |
- CVE-2015-926241Plan
_XcursorThemeInherits in library.c in libXcursor before 1.1.15 allows remote attackers to cause denial of service or potentially code execut
CriticalCVSS 9.8No exploitEPSS 6%x · libxcursorAug 1, 2018
- CVE-2008-236241Plan
Multiple integer overflows in the Render extension in the X server 1.4 in X.Org X11R7.3 allow context-dependent attackers to execute arbitra
CriticalCVSS 10.0No exploitEPSS 4%x · x11Jun 16, 2008
- CVE-2013-646240Plan
Stack-based buffer overflow in the bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont 1.1 through 1.4.6 allows remote attacker
CriticalCVSS 9.3No exploitEPSS 10%x · libxfontJan 9, 2014
- CVE-2011-289540Plan
The LZW decompressor in (1) the BufCompressedFill function in fontfile/decompress.c in X.Org libXfont before 1.4.4 and (2) compress/compress
CriticalCVSS 9.3No exploitEPSS 8%x · libxfontAug 19, 2011
- CVE-2016-795140Plan
Multiple integer overflows in X.org libXtst before 1.2.3 allow remote X servers to trigger out-of-bounds memory access operations by leverag
CriticalCVSS 9.8No exploitEPSS 2%x · libxtstDec 13, 2016
- CVE-2007-519940Plan
A single byte overflow in catalogue.c in X.Org libXfont 1.3.1 allows remote attackers to have unspecified impact.
CriticalCVSS 9.8No exploitEPSS 2%x · libxfontAug 18, 2017
- CVE-2011-046539Monitor
xrdb.c in xrdb before 1.0.9 in X.Org X11R7.6 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a
CriticalCVSS 9.3No exploitEPSS 6%x · x11Apr 8, 2011
- CVE-2008-236037Monitor
Integer overflow in the AllocateGlyph function in the Render extension in the X server 1.4 in X.Org X11R7.3 allows context-dependent attacke
CriticalCVSS 9.0No exploitEPSS 3%x · x11Jun 16, 2008
- CVE-2008-137737Monitor
The (1) SProcRecordCreateContext and (2) SProcRecordRegisterClients functions in the Record extension and the (3) SProcSecurityGenerateAutho
CriticalCVSS 9.0No exploitEPSS 3%x · x11Jun 16, 2008
- CVE-2015-180435Monitor
The bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 does not properly perform type conv
HighCVSS 8.5No exploitEPSS 5%x · libxfontMar 20, 2015
- CVE-2015-180235Monitor
The bdfReadProperties function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 allows remote authenticated users t
HighCVSS 8.5No exploitEPSS 5%x · libxfontMar 20, 2015
- CVE-2015-180335Monitor
The bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 does not properly handle character
HighCVSS 8.5No exploitEPSS 5%x · libxfontMar 20, 2015
- CVE-2026-5600135Monitor
libXfont2 BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow
HighCVSS 8.8No exploitEPSS 1%x · libxfontJul 8, 2026
- CVE-2026-5600335Monitor
libXfont2 computeProps Property Buffer Heap Buffer Overflow
HighCVSS 8.8No exploitEPSS 1%x · libxfontJul 8, 2026
- CVE-2026-5600235Monitor
libXfont2 PCF Font Parsing Heap Buffer Overflow
HighCVSS 8.8No exploitEPSS 1%x · libxfontJul 8, 2026
- CVE-2017-1661232Monitor
libXcursor before 1.1.15 has various integer overflows that could lead to heap buffer overflows when processing malicious cursors, e.g., wit
HighCVSS 7.5No exploitEPSS 5%x · libxcursorDec 1, 2017
- CVE-2014-021031Monitor
Multiple buffer overflows in X.Org libXfont before 1.4.8 and 1.4.9x before 1.4.99.901 allow remote font servers to execute arbitrary code vi
HighCVSS 7.5No exploitEPSS 5%x · libxfontMay 15, 2014
- CVE-2014-021131Monitor
Multiple integer overflows in the (1) fs_get_reply, (2) fs_alloc_glyphs, and (3) fs_read_extent_info functions in X.Org libXfont before 1.4.
HighCVSS 7.5No exploitEPSS 4%x · libxfontMay 15, 2014
- CVE-2010-116630Monitor
The fbComposite function in fbpict.c in the Render extension in the X server in X.Org X11R7.1 allows remote authenticated users to cause a d
HighCVSS 7.1No exploitEPSS 5%x · x.orgApr 29, 2010
- CVE-2013-200228Monitor
Buffer overflow in X.org libXt 1.1.3 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code v
MediumCVSS 6.8No exploitEPSS 3%x · libxtJun 15, 2013
- CVE-2013-200128Monitor
Buffer overflow in X.org libXxf86vm 1.1.2 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary c
MediumCVSS 6.8No exploitEPSS 3%x · libxxf86vmJun 15, 2013
- CVE-2013-199328Monitor
Multiple integer overflows in X.org libGLX in Mesa 9.1.1 and earlier allow X servers to trigger allocation of insufficient memory and a buff
MediumCVSS 6.8No exploitEPSS 3%x · libglxJun 15, 2013
- CVE-2013-206428Monitor
Integer overflow in X.org libxcb 1.9 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vec
MediumCVSS 6.8No exploitEPSS 2%x · libxcbJun 15, 2013
- CVE-2013-206628Monitor
Buffer overflow in X.org libXv 1.0.7 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code v
MediumCVSS 6.8No exploitEPSS 2%x · libxvJun 15, 2013
- CVE-2013-199928Monitor
Buffer overflow in X.org libXvMC 1.0.7 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code
MediumCVSS 6.8No exploitEPSS 2%x · libxvmcJun 15, 2013