CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

x.org

x_server

58 known vulnerabilities · sorted by CVSS score

CVE-2017-12183
CRITICAL9.8

xorg-x11-server before 1.19.5 was missing length validation in XFIXES extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

debian / debian_linux+2
Network
Published Jan 24, 2018
Page 1 of 3
CVE-2017-12187
CRITICAL9.8

xorg-x11-server before 1.19.5 was missing length validation in RENDER extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

debian / debian_linux+2
Network
Published Jan 24, 2018
CVE-2017-12186
CRITICAL9.8

xorg-x11-server before 1.19.5 was missing length validation in X-Resource extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

debian / debian_linux+2
Network
Published Jan 24, 2018
CVE-2017-12178
CRITICAL9.8

xorg-x11-server before 1.19.5 had wrong extra length check in ProcXIChangeHierarchy function allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

debian / debian_linux+2
Network
Published Jan 24, 2018
CVE-2017-12185
CRITICAL9.8

xorg-x11-server before 1.19.5 was missing length validation in MIT-SCREEN-SAVER extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

debian / debian_linux+2
Network
Published Jan 24, 2018
CVE-2017-12180
CRITICAL9.8

xorg-x11-server before 1.19.5 was missing length validation in XFree86 VidModeExtension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

debian / debian_linux+2
Network
Published Jan 24, 2018
CVE-2017-12179
CRITICAL9.8

xorg-x11-server before 1.19.5 was vulnerable to integer overflow in (S)ProcXIBarrierReleasePointer functions allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

debian / debian_linux+2
Network
Published Jan 24, 2018
CVE-2017-12182
CRITICAL9.8

xorg-x11-server before 1.19.5 was missing length validation in XFree86 DRI extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

debian / debian_linux+2
Network
Published Jan 24, 2018
CVE-2017-12176
CRITICAL9.8

xorg-x11-server before 1.19.5 was missing extra length validation in ProcEstablishConnection function allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

debian / debian_linux+2
Network
Published Jan 24, 2018
CVE-2017-12177
CRITICAL9.8

xorg-x11-server before 1.19.5 was vulnerable to integer overflow in ProcDbeGetVisualInfo function allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

debian / debian_linux+2
Network
Published Jan 24, 2018
CVE-2023-6816
CRITICAL9.8

A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQueryPointer reply contain a bit for each logical button currently down. Buttons can be arbitrarily mapped to any value up to 255, but the X.Org Server was only allocating space for the device's particular number of buttons, leading to a heap overflow if a bigger value was used.

x.org / x_server+6
Network
Published Jan 18, 2024
CVE-2017-12181
CRITICAL9.8

xorg-x11-server before 1.19.5 was missing length validation in XFree86 DGA extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

debian / debian_linux+2
Network
Published Jan 24, 2018
CVE-2017-12184
CRITICAL9.8

xorg-x11-server before 1.19.5 was missing length validation in XINERAMA extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

debian / debian_linux+2
Network
Published Jan 24, 2018
CVE-2022-46342
HIGH8.8

A vulnerability was found in X.Org. This security flaw occurs because the handler for the XvdiSelectVideoNotify request may write to memory after it has been freed. This issue can lead to local privileges elevation on systems where the X se

x.org / x_server+3
Network
Published Dec 14, 2022
CVE-2022-46340
HIGH8.8

A vulnerability was found in X.Org. This security flaw occurs becuase the swap handler for the XTestFakeInput request of the XTest extension may corrupt the stack if GenericEvents with lengths larger than 32 bytes are sent through a the XTestFakeInput request. This issue can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for ssh X forwarding sessions. This issue does not affect systems where client and server use the same byte order.

x.org / x_server+3
Network
Published Dec 14, 2022
CVE-2022-46341
HIGH8.8

A vulnerability was found in X.Org. This security flaw occurs because the handler for the XIPassiveUngrab request accesses out-of-bounds memory when invoked with a high keycode or button code. This issue can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for ssh X forwarding sessions.

x.org / x_server+3
Network
Published Dec 14, 2022
CVE-2022-46344
HIGH8.8

A vulnerability was found in X.Org. This security flaw occurs because the handler for the XIChangeProperty request has a length-validation issues, resulting in out-of-bounds memory reads and potential information disclosure. This issue can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for ssh X forwarding sessions.

x.org / x_server+3
Network
Published Dec 14, 2022
CVE-2022-46343
HIGH8.8

A vulnerability was found in X.Org. This security flaw occurs because the handler for the ScreenSaverSetAttributes request may write to memory after it has been freed. This issue can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for ssh X forwarding sessions.

x.org / x_server+3
Network
Published Dec 14, 2022
CVE-2025-26598
HIGH7.8

An out-of-bounds write flaw was found in X.Org and Xwayland. The function GetBarrierDevice() searches for the pointer device based on its device ID and returns the matching value, or supposedly NULL, if no match was found. However, the code will return the last element of the list if no matching device ID is found, which can lead to out-of-bounds memory access.

tigervnc / tigervnc+5
Local
Published Feb 25, 2025
CVE-2025-26594
HIGH7.8

A use-after-free flaw was found in X.Org and Xwayland. The root cursor is referenced in the X server as a global variable. If a client frees the root cursor, the internal reference points to freed memory and causes a use-after-free.

tigervnc / tigervnc+5
Local
Published Feb 25, 2025