Related Vulnerabilities: CVE-2017-12176  

A security issue has been found in xorg-server, due to a missing validation of the extra length in ProcEstablishConnection().

Severity High

Remote Yes

Type Arbitrary code execution

Description

A security issue has been found in xorg-server, due to a missing validation of the extra length in ProcEstablishConnection().

AVG-443 xorg-server 1.19.4-1 1.19.5-1 High Fixed

21 Oct 2017 ASA-201710-29 AVG-443 xorg-server High arbitrary code execution

https://cgit.freedesktop.org/xorg/xserver/commit/?id=b747da5e25be944337a9cd1415506fc06b70aa81