Записи x
55 опубликованных записей вендора x.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 12
- С записью об исправлении
- 96,4 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-189 Numeric Errors25
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer15
- CWE-20 Improper Input Validation3
- CWE-122 Heap-based Buffer Overflow3
- CWE-264 Permissions, Privileges, and Access Controls2
- CWE-125 Out-of-bounds Read1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
55 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
41В плане | CVE-2015-9262Эксплойта нет | _XcursorThemeInherits in library.c in libXcursor before 1.1.15 allows remote attackers to cause denial of service or potentially code executx · libxcursor · CWE-119 | Критическая9,8 | — | 5,7 % | 1 авг. 2018 г. |
41В плане | CVE-2008-2362Эксплойта нет | Multiple integer overflows in the Render extension in the X server 1.4 in X.Org X11R7.3 allow context-dependent attackers to execute arbitrax · x11 · CWE-189 | Критическая10,0 | — | 3,6 % | 16 июн. 2008 г. |
40В плане | CVE-2013-6462Эксплойта нет | Stack-based buffer overflow in the bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont 1.1 through 1.4.6 allows remote attackerx · libxfont · CWE-119 | Критическая9,3 | — | 10,3 % | 9 янв. 2014 г. |
40В плане | CVE-2011-2895Эксплойта нет | The LZW decompressor in (1) the BufCompressedFill function in fontfile/decompress.c in X.Org libXfont before 1.4.4 and (2) compress/compressx · libxfont · CWE-119 | Критическая9,3 | — | 8,4 % | 19 авг. 2011 г. |
40В плане | CVE-2016-7951Эксплойта нет | Multiple integer overflows in X.org libXtst before 1.2.3 allow remote X servers to trigger out-of-bounds memory access operations by leveragx · libxtst · CWE-125 | Критическая9,8 | — | 2,4 % | 13 дек. 2016 г. |
40В плане | CVE-2007-5199Эксплойта нет | A single byte overflow in catalogue.c in X.Org libXfont 1.3.1 allows remote attackers to have unspecified impact.x · libxfont · CWE-119 | Критическая9,8 | — | 2,2 % | 18 авг. 2017 г. |
39Наблюдать | CVE-2011-0465Эксплойта нет | xrdb.c in xrdb before 1.0.9 in X.Org X11R7.6 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in ax · x11 · CWE-20 | Критическая9,3 | — | 5,8 % | 8 апр. 2011 г. |
37Наблюдать | CVE-2008-2360Эксплойта нет | Integer overflow in the AllocateGlyph function in the Render extension in the X server 1.4 in X.Org X11R7.3 allows context-dependent attackex · x11 · CWE-189 | Критическая9,0 | — | 3,2 % | 16 июн. 2008 г. |
37Наблюдать | CVE-2008-1377Эксплойта нет | The (1) SProcRecordCreateContext and (2) SProcRecordRegisterClients functions in the Record extension and the (3) SProcSecurityGenerateAuthox · x11 · CWE-189 | Критическая9,0 | — | 2,7 % | 16 июн. 2008 г. |
35Наблюдать | CVE-2015-1804Эксплойта нет | The bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 does not properly perform type convx · libxfont · CWE-189 | Высокая8,5 | — | 5,0 % | 20 мар. 2015 г. |
35Наблюдать | CVE-2015-1802Эксплойта нет | The bdfReadProperties function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 allows remote authenticated users tx · libxfont · CWE-119 | Высокая8,5 | — | 4,9 % | 20 мар. 2015 г. |
35Наблюдать | CVE-2015-1803Эксплойта нет | The bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 does not properly handle character x · libxfont | Высокая8,5 | — | 4,9 % | 20 мар. 2015 г. |
35Наблюдать | CVE-2026-56001Эксплойта нет | libXfont2 BitmapScaleBitmaps Integer Overflow Heap Buffer Overflowx · libxfont · CWE-122 | Высокая8,8 | — | 0,6 % | 8 июл. 2026 г. |
35Наблюдать | CVE-2026-56003Эксплойта нет | libXfont2 computeProps Property Buffer Heap Buffer Overflowx · libxfont · CWE-122 | Высокая8,8 | — | 0,6 % | 8 июл. 2026 г. |
35Наблюдать | CVE-2026-56002Эксплойта нет | libXfont2 PCF Font Parsing Heap Buffer Overflowx · libxfont · CWE-122 | Высокая8,8 | — | 0,6 % | 8 июл. 2026 г. |
32Наблюдать | CVE-2017-16612Эксплойта нет | libXcursor before 1.1.15 has various integer overflows that could lead to heap buffer overflows when processing malicious cursors, e.g., witx · libxcursor · CWE-190 | Высокая7,5 | — | 5,2 % | 1 дек. 2017 г. |
31Наблюдать | CVE-2014-0210Эксплойта нет | Multiple buffer overflows in X.Org libXfont before 1.4.8 and 1.4.9x before 1.4.99.901 allow remote font servers to execute arbitrary code vix · libxfont · CWE-119 | Высокая7,5 | — | 4,6 % | 15 мая 2014 г. |
31Наблюдать | CVE-2014-0211Эксплойта нет | Multiple integer overflows in the (1) fs_get_reply, (2) fs_alloc_glyphs, and (3) fs_read_extent_info functions in X.Org libXfont before 1.4.x · libxfont · CWE-189 | Высокая7,5 | — | 4,4 % | 15 мая 2014 г. |
30Наблюдать | CVE-2010-1166Эксплойта нет | The fbComposite function in fbpict.c in the Render extension in the X server in X.Org X11R7.1 allows remote authenticated users to cause a dx · x.org · CWE-189 | Высокая7,1 | — | 5,4 % | 29 апр. 2010 г. |
28Наблюдать | CVE-2013-2002Эксплойта нет | Buffer overflow in X.org libXt 1.1.3 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code vx · libxt · CWE-189 | Средняя6,8 | — | 3,1 % | 15 июн. 2013 г. |
28Наблюдать | CVE-2013-2001Эксплойта нет | Buffer overflow in X.org libXxf86vm 1.1.2 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary cx · libxxf86vm · CWE-119 | Средняя6,8 | — | 2,7 % | 15 июн. 2013 г. |
28Наблюдать | CVE-2013-1993Эксплойта нет | Multiple integer overflows in X.org libGLX in Mesa 9.1.1 and earlier allow X servers to trigger allocation of insufficient memory and a buffx · libglx · CWE-189 | Средняя6,8 | — | 2,7 % | 15 июн. 2013 г. |
28Наблюдать | CVE-2013-2064Эксплойта нет | Integer overflow in X.org libxcb 1.9 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vecx · libxcb · CWE-189 | Средняя6,8 | — | 2,5 % | 15 июн. 2013 г. |
28Наблюдать | CVE-2013-2066Эксплойта нет | Buffer overflow in X.org libXv 1.0.7 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code vx · libxv · CWE-119 | Средняя6,8 | — | 2,3 % | 15 июн. 2013 г. |
28Наблюдать | CVE-2013-1999Эксплойта нет | Buffer overflow in X.org libXvMC 1.0.7 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary codex · libxvmc · CWE-119 | Средняя6,8 | — | 2,3 % | 15 июн. 2013 г. |
- CVE-2015-926241В плане
_XcursorThemeInherits in library.c in libXcursor before 1.1.15 allows remote attackers to cause denial of service or potentially code execut
КритическаяCVSS 9,8Эксплойта нетEPSS 6 %x · libxcursor1 авг. 2018 г.
- CVE-2008-236241В плане
Multiple integer overflows in the Render extension in the X server 1.4 in X.Org X11R7.3 allow context-dependent attackers to execute arbitra
КритическаяCVSS 10,0Эксплойта нетEPSS 4 %x · x1116 июн. 2008 г.
- CVE-2013-646240В плане
Stack-based buffer overflow in the bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont 1.1 through 1.4.6 allows remote attacker
КритическаяCVSS 9,3Эксплойта нетEPSS 10 %x · libxfont9 янв. 2014 г.
- CVE-2011-289540В плане
The LZW decompressor in (1) the BufCompressedFill function in fontfile/decompress.c in X.Org libXfont before 1.4.4 and (2) compress/compress
КритическаяCVSS 9,3Эксплойта нетEPSS 8 %x · libxfont19 авг. 2011 г.
- CVE-2016-795140В плане
Multiple integer overflows in X.org libXtst before 1.2.3 allow remote X servers to trigger out-of-bounds memory access operations by leverag
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %x · libxtst13 дек. 2016 г.
- CVE-2007-519940В плане
A single byte overflow in catalogue.c in X.Org libXfont 1.3.1 allows remote attackers to have unspecified impact.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %x · libxfont18 авг. 2017 г.
- CVE-2011-046539Наблюдать
xrdb.c in xrdb before 1.0.9 in X.Org X11R7.6 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a
КритическаяCVSS 9,3Эксплойта нетEPSS 6 %x · x118 апр. 2011 г.
- CVE-2008-236037Наблюдать
Integer overflow in the AllocateGlyph function in the Render extension in the X server 1.4 in X.Org X11R7.3 allows context-dependent attacke
КритическаяCVSS 9,0Эксплойта нетEPSS 3 %x · x1116 июн. 2008 г.
- CVE-2008-137737Наблюдать
The (1) SProcRecordCreateContext and (2) SProcRecordRegisterClients functions in the Record extension and the (3) SProcSecurityGenerateAutho
КритическаяCVSS 9,0Эксплойта нетEPSS 3 %x · x1116 июн. 2008 г.
- CVE-2015-180435Наблюдать
The bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 does not properly perform type conv
ВысокаяCVSS 8,5Эксплойта нетEPSS 5 %x · libxfont20 мар. 2015 г.
- CVE-2015-180235Наблюдать
The bdfReadProperties function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 allows remote authenticated users t
ВысокаяCVSS 8,5Эксплойта нетEPSS 5 %x · libxfont20 мар. 2015 г.
- CVE-2015-180335Наблюдать
The bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 does not properly handle character
ВысокаяCVSS 8,5Эксплойта нетEPSS 5 %x · libxfont20 мар. 2015 г.
- CVE-2026-5600135Наблюдать
libXfont2 BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %x · libxfont8 июл. 2026 г.
- CVE-2026-5600335Наблюдать
libXfont2 computeProps Property Buffer Heap Buffer Overflow
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %x · libxfont8 июл. 2026 г.
- CVE-2026-5600235Наблюдать
libXfont2 PCF Font Parsing Heap Buffer Overflow
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %x · libxfont8 июл. 2026 г.
- CVE-2017-1661232Наблюдать
libXcursor before 1.1.15 has various integer overflows that could lead to heap buffer overflows when processing malicious cursors, e.g., wit
ВысокаяCVSS 7,5Эксплойта нетEPSS 5 %x · libxcursor1 дек. 2017 г.
- CVE-2014-021031Наблюдать
Multiple buffer overflows in X.Org libXfont before 1.4.8 and 1.4.9x before 1.4.99.901 allow remote font servers to execute arbitrary code vi
ВысокаяCVSS 7,5Эксплойта нетEPSS 5 %x · libxfont15 мая 2014 г.
- CVE-2014-021131Наблюдать
Multiple integer overflows in the (1) fs_get_reply, (2) fs_alloc_glyphs, and (3) fs_read_extent_info functions in X.Org libXfont before 1.4.
ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %x · libxfont15 мая 2014 г.
- CVE-2010-116630Наблюдать
The fbComposite function in fbpict.c in the Render extension in the X server in X.Org X11R7.1 allows remote authenticated users to cause a d
ВысокаяCVSS 7,1Эксплойта нетEPSS 5 %x · x.org29 апр. 2010 г.
- CVE-2013-200228Наблюдать
Buffer overflow in X.org libXt 1.1.3 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code v
СредняяCVSS 6,8Эксплойта нетEPSS 3 %x · libxt15 июн. 2013 г.
- CVE-2013-200128Наблюдать
Buffer overflow in X.org libXxf86vm 1.1.2 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary c
СредняяCVSS 6,8Эксплойта нетEPSS 3 %x · libxxf86vm15 июн. 2013 г.
- CVE-2013-199328Наблюдать
Multiple integer overflows in X.org libGLX in Mesa 9.1.1 and earlier allow X servers to trigger allocation of insufficient memory and a buff
СредняяCVSS 6,8Эксплойта нетEPSS 3 %x · libglx15 июн. 2013 г.
- CVE-2013-206428Наблюдать
Integer overflow in X.org libxcb 1.9 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vec
СредняяCVSS 6,8Эксплойта нетEPSS 2 %x · libxcb15 июн. 2013 г.
- CVE-2013-206628Наблюдать
Buffer overflow in X.org libXv 1.0.7 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code v
СредняяCVSS 6,8Эксплойта нетEPSS 2 %x · libxv15 июн. 2013 г.
- CVE-2013-199928Наблюдать
Buffer overflow in X.org libXvMC 1.0.7 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code
СредняяCVSS 6,8Эксплойта нетEPSS 2 %x · libxvmc15 июн. 2013 г.