Vulnerability index

Browse CVEs

34 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Libxfont HIGH 8.8
CVE-2026-56002

A heap bufferflow in pcfReadFont() due to missing glyph bounds checking in libXfont2 before 2.0.8  allows attackers authenticated as X client to exec…

Fix: 2.0.8+
Fix from $1,950 2026-07-08
Libxfont HIGH 8.8
CVE-2026-56003

A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXf…

Fix: 2.0.8+
Fix from $1,950 2026-07-08
Libxfont HIGH 8.8
CVE-2026-56001

A heap buffer overflow in BitmapScaleBitmaps in libXfont2 before 2.0.8 due to an overflowing 32bit size could be used by attackers able to access the…

Fix: 2.0.8+
Fix from $1,950 2026-07-08
Libxfont CRITICAL 9.8
CVE-2007-5199

A single byte overflow in catalogue.c in X.Org libXfont 1.3.1 allows remote attackers to have unspecified impact.

No fix yet
Fix from $2,300 2017-08-18
Libxfont HIGH 8.5
CVE-2015-1804

The bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 does not properly perform type conversion fo…

Fix: after 1.4.8
Fix from $1,950 2015-03-20
Libxfont HIGH 8.5
CVE-2015-1802

The bdfReadProperties function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 allows remote authenticated users to cause a…

Fix: after 1.4.8
Fix from $1,950 2015-03-20
Libxfont HIGH 9.3
CVE-2013-6462EPSS 10%

Stack-based buffer overflow in the bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont 1.1 through 1.4.6 allows remote attackers to caus…

Patch available
Fix from $1,950 2014-01-09
X.org X11 MEDIUM 6.5
CVE-2013-4396

Use-after-free vulnerability in the doImageText function in dix/dixfonts.c in the xorg-server module before 1.14.4 in X.Org X11 allows remote authent…

Patch available
Fix from $1,600 2013-10-10
Libxt MEDIUM 6.8
CVE-2013-2005

X.org libXt 1.1.3 and earlier does not check the return value of the XGetWindowProperty function, which allows X servers to trigger use of an uniniti…

Fix: after 1.1.3
Fix from $1,600 2013-06-15
Libxv MEDIUM 6.8
CVE-2013-2066

Buffer overflow in X.org libXv 1.0.7 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code via crafte…

Fix: after 1.0.7
Fix from $1,600 2013-06-15
Libfs MEDIUM 6.8
CVE-2013-1996

X.org libFS 1.0.4 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to an unexpecte…

Fix: after 1.0.4
Fix from $1,600 2013-06-15
Libx11 MEDIUM 6.8
CVE-2013-1997

Multiple buffer overflows in X.org libX11 1.5.99.901 (1.6 RC1) and earlier allow X servers to cause a denial of service (crash) and possibly execute …

Fix: after 1.5.99.901
Fix from $1,600 2013-06-15
Libxvmc MEDIUM 6.8
CVE-2013-1999

Buffer overflow in X.org libXvMC 1.0.7 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code via craf…

Fix: after 1.0.7
Fix from $1,600 2013-06-15
Libxxf86dga MEDIUM 6.8
CVE-2013-2000

Multiple buffer overflows in X.org libXxf86dga 1.1.3 and earlier allow X servers to cause a denial of service (crash) and possibly execute arbitrary …

Fix: after 1.1.3
Fix from $1,600 2013-06-15
Libxxf86vm MEDIUM 6.8
CVE-2013-2001

Buffer overflow in X.org libXxf86vm 1.1.2 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code via c…

Fix: after 1.1.2
Fix from $1,600 2013-06-15
Libxt MEDIUM 6.8
CVE-2013-2002

Buffer overflow in X.org libXt 1.1.3 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code via crafte…

Fix: after 1.1.3
Fix from $1,600 2013-06-15
Libxcursor MEDIUM 6.8
CVE-2013-2003

Integer overflow in X.org libXcursor 1.1.13 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vecto…

Fix: after 1.1.13
Fix from $1,600 2013-06-15
Libx11 MEDIUM 6.8
CVE-2013-2004

The (1) GetDatabase and (2) _XimParseStringFile functions in X.org libX11 1.5.99.901 (1.6 RC1) and earlier do not restrict the recursion depth when p…

Fix: after 1.5.99.901
Fix from $1,600 2013-06-15
Libxrandr MEDIUM 6.8
CVE-2013-1986

Multiple integer overflows in X.org libXrandr 1.4.0 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow vi…

Fix: after 1.4.0
Fix from $1,600 2013-06-15
Libxres MEDIUM 6.8
CVE-2013-1988

Multiple integer overflows in X.org libXRes 1.0.6 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via …

Fix: after 1.0.6
Fix from $1,600 2013-06-15
Libxv MEDIUM 6.8
CVE-2013-1989

Multiple integer overflows in X.org libXv 1.0.7 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via ve…

Fix: after 1.0.7
Fix from $1,600 2013-06-15
Libxvmc MEDIUM 6.8
CVE-2013-1990

Multiple integer overflows in X.org libXvMC 1.0.7 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via …

Fix: after 1.0.7
Fix from $1,600 2013-06-15
Libxxf86dga MEDIUM 6.8
CVE-2013-1991

Multiple integer overflows in X.org libXxf86dga 1.1.3 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow …

Fix: after 1.1.3
Fix from $1,600 2013-06-15
Libdmx MEDIUM 6.8
CVE-2013-1992

Multiple integer overflows in X.org libdmx 1.1.2 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via v…

Fix: after 1.1.2
Fix from $1,600 2013-06-15
Libxp MEDIUM 6.8
CVE-2013-2062

Multiple integer overflows in X.org libXp 1.0.1 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via ve…

Fix: after 1.0.1
Fix from $1,600 2013-06-15
Libxtst MEDIUM 6.8
CVE-2013-2063

Integer overflow in X.org libXtst 1.2.1 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors r…

Fix: after 1.2.1
Fix from $1,600 2013-06-15
Libxext MEDIUM 6.8
CVE-2013-1982

Multiple integer overflows in X.org libXext 1.3.1 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via …

Fix: after 1.3.1
Fix from $1,600 2013-06-15
Libxfixes MEDIUM 6.8
CVE-2013-1983

Integer overflow in X.org libXfixes 5.0 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors r…

Fix: after 5.0
Fix from $1,600 2013-06-15
Libxinerama MEDIUM 6.8
CVE-2013-1985

Integer overflow in X.org libXinerama 1.1.2 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vecto…

Fix: after 1.1.2
Fix from $1,600 2013-06-15
X.org HIGH 7.1
CVE-2010-1166EPSS 5%

The fbComposite function in fbpict.c in the Render extension in the X server in X.Org X11R7.1 allows remote authenticated users to cause a denial of …

Patch available
Fix from $1,950 2010-04-29