Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
xfree86 project xfree86 x vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2004-0084
Buffer overflow in the ReadFontAlias function in XFree86 4.1.0 to 4.3.0, when using the CopyISOLatin1Lowered function, allows local or remote authenticated users to execute arbitrary code via a malformed entry in the font alias (font.alias) file, a different vulnerability than CV...
Xfree86 Project X11r6 4.1.0
Xfree86 Project X11r6 4.3.0
Xfree86 Project X11r6 4.2.1
Xfree86 Project X11r6 4.2.0
Xfree86 Project X11r6 4.1.12
Xfree86 Project X11r6 4.1.11
Openbsd Openbsd 3.3
Openbsd Openbsd 3.4
1 EDB exploit
NA
CVE-2004-0106
Multiple unknown vulnerabilities in XFree86 4.1.0 to 4.3.0, related to improper handling of font files, a different set of vulnerabilities than CVE-2004-0083 and CVE-2004-0084.
Xfree86 Project X11r6 4.1.0
Xfree86 Project X11r6 4.3.0
Xfree86 Project X11r6 4.2.1
Xfree86 Project X11r6 4.2.0
Xfree86 Project X11r6 4.1.12
Xfree86 Project X11r6 4.1.11
Openbsd Openbsd 3.3
Openbsd Openbsd 3.4
NA
CVE-2003-0690
KDM in KDE 3.1.3 and previous versions does not verify whether the pam_setcred function call succeeds, which may allow malicious users to gain root privileges by triggering error conditions within PAM modules, as demonstrated in certain configurations of the MIT pam_krb5 module.
Kde Kde 2.2.1
Kde Kde 2.1.2
Kde Kde 2.0
Kde Kde 3.0.2
Kde Kde 3.0.5
Kde Kde 2.0 Beta
Kde Kde 2.2
Kde Kde 3.1.1a
Kde Kde 2.0.1
Kde Kde 3.0.5b
Kde Kde 3.1.2
Kde Kde 2.1
Kde Kde 3.0.1
Kde Kde 3.0.5a
Kde Kde 3.0.4
Kde Kde 3.0
Kde Kde 2.1.1
Kde Kde 1.1.2
Kde Kde 1.1.1
Kde Kde 3.1.3
Kde Kde 2.2.2
Kde Kde 3.1
NA
CVE-2001-1409
dexconf in XFree86 Xserver 4.1.0-2 creates the /dev/dri directory with insecure permissions (666), which allows local users to replace or create files in the root file system.
Xfree86 Project Xfree86 X Server 4.1.0.2
NA
CVE-2002-1510
xdm, with the authComplain variable set to false, allows arbitrary malicious users to connect to the X server if the xdm auth directory does not exist.
Xfree86 Project X11r6
NA
CVE-2002-1317
Buffer overflow in Dispatch() routine for XFS font server (fs.auto) on Solaris 2.5.1 through 9 allows remote malicious users to cause a denial of service (crash) or execute arbitrary code via a certain XFS query.
Sgi Irix 6.5.6
Xfree86 Project X11r6 3.3.4
Sgi Irix 6.5.1
Sgi Irix 6.5.10
Sgi Irix 6.5.12
Sgi Irix 6.5.9
Xfree86 Project X11r6 3.3
Sgi Irix 6.5.3
Sgi Irix 6.5.8
Sgi Irix 6.5.5
Xfree86 Project X11r6 3.3.2
Sgi Irix 6.5.4
Xfree86 Project X11r6 3.3.5
Sgi Irix 6.5.11
Sgi Irix 6.5.2
Sgi Irix 6.5
Sgi Irix 6.5.7
Xfree86 Project X11r6 3.3.3
Sgi Irix 6.5.13
Hp Hp-ux 11.11
Sun Solaris 2.5.1
Hp Hp-ux 11.04
1 EDB exploit
NA
CVE-2001-1086
XDM in XFree86 3.3 and 3.3.3 generates easily guessable cookies using gettimeofday() when compiled with the HasXdmXauth option, which allows remote malicious users to gain unauthorized access to the X display via a brute force attack.
Xfree86 Project X11r6 3.3
Xfree86 Project X11r6 3.3.3
1 EDB exploit
NA
CVE-2000-0976
Buffer overflow in xlib in XFree 3.3.x possibly allows local users to execute arbitrary commands via a long DISPLAY environment variable or a -display command line parameter.
Xfree86 Project Xlib 3.3x
1 EDB exploit
NA
CVE-2000-1060
The default configuration of XFCE 3.5.1 bypasses the Xauthority access control mechanism with an "xhost + localhost" command in the xinitrc program, which allows local users to sniff X Windows traffic and gain privileges.
Xfree86 Project Xfce 3.5.1
NA
CVE-2000-0504
libICE in XFree86 allows remote malicious users to cause a denial of service by specifying a large value which is not properly checked by the SKIP_STRING macro.
Xfree86 Project X11r6 3.3.4
Xfree86 Project X11r6 3.3.6
Open Group X 11.0r5
Gnome Gdm 1.1
Open Group X 11.0r6.2
Open Group X 11.0r6.3
Open Group X 11.0r6
Open Group X 11.0r6.4
Xfree86 Project X11r6 4.0
Gnome Gdm 1.0
Open Group X 11.0r6.1
Xfree86 Project X11r6 3.3.5
Xfree86 Project X11r6 3.3.3
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
logic flaw
CVE-2024-23692
CVE-2024-26229
CVE-2024-35255
CVE-2024-5835
CVE-2024-5837
XML external entity
dos
CVE-2024-5813
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »