10
CVSSv2

CVE-2012-2118

Published: 18/05/2012 Updated: 29/08/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Format string vulnerability in the LogVHdrMessageVerb function in os/log.c in X.Org X11 1.11 allows malicious users to cause a denial of service or possibly execute arbitrary code via format string specifiers in an input device name.

Vulnerable Product Search on Vulmon Subscribe to Product

x.org x11 1.11

Vendor Advisories

Debian Bug report logs - #673148 CVE-2012-2118 Package: xorg-server; Maintainer for xorg-server is Debian X Strike Force <debian-x@listsdebianorg>; Reported by: Moritz Muehlenhoff <muehlenhoff@univentionde> Date: Wed, 16 May 2012 13:12:02 UTC Severity: important Tags: security Found in version 2:1999902-1 Fixe ...
The XOrg X server could be made to crash if a specially crafted input device was added ...