Show filters
39 Total Results
Displaying 21-30 of 39
Sort by:
Attacker Value
Unknown
CVE-2003-0071
Disclosure Date: March 03, 2003 (last updated February 22, 2025)
The DEC UDK processing feature in the xterm terminal emulator in XFree86 4.2.99.4 and earlier allows attackers to cause a denial of service via a certain character escape sequence that causes the terminal to enter a tight loop.
0
Attacker Value
Unknown
CVE-2002-1510
Disclosure Date: March 03, 2003 (last updated February 22, 2025)
xdm, with the authComplain variable set to false, allows arbitrary attackers to connect to the X server if the xdm auth directory does not exist.
0
Attacker Value
Unknown
CVE-2002-1472
Disclosure Date: March 03, 2003 (last updated February 22, 2025)
Untrusted search path vulnerability in libX11.so in xfree86, when used in setuid or setgid programs, allows local users to gain root privileges via a modified LD_PRELOAD environment variable that points to a malicious module.
0
Attacker Value
Unknown
CVE-2003-0063
Disclosure Date: March 03, 2003 (last updated February 22, 2025)
The xterm terminal emulator in XFree86 4.2.0 and earlier allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, e.g. when the user views a file containing the malicious sequence, which could allow the attacker to execute arbitrary commands.
0
Attacker Value
Unknown
CVE-2002-1317
Disclosure Date: December 11, 2002 (last updated February 22, 2025)
Buffer overflow in Dispatch() routine for XFS font server (fs.auto) on Solaris 2.5.1 through 9 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a certain XFS query.
0
Attacker Value
Unknown
CVE-2001-0955
Disclosure Date: September 22, 2001 (last updated February 22, 2025)
Buffer overflow in fbglyph.c in XFree86 before 4.2.0, related to glyph clipping for large origins, allows attackers to cause a denial of service and possibly gain privileges via a large number of characters, possibly through the web page search form of KDE Konqueror or from an xterm command with a long title.
0
Attacker Value
Unknown
CVE-2001-1179
Disclosure Date: July 17, 2001 (last updated February 22, 2025)
xman allows local users to gain privileges by modifying the MANPATH to point to a man page whose filename contains shell metacharacters.
0
Attacker Value
Unknown
CVE-2001-1178
Disclosure Date: July 11, 2001 (last updated February 22, 2025)
Buffer overflow in xman allows local users to gain privileges via a long MANPATH environment variable.
0
Attacker Value
Unknown
CVE-2001-1086
Disclosure Date: July 04, 2001 (last updated February 22, 2025)
XDM in XFree86 3.3 and 3.3.3 generates easily guessable cookies using gettimeofday() when compiled with the HasXdmXauth option, which allows remote attackers to gain unauthorized access to the X display via a brute force attack.
0
Attacker Value
Unknown
CVE-2000-0976
Disclosure Date: December 19, 2000 (last updated February 22, 2025)
Buffer overflow in xlib in XFree 3.3.x possibly allows local users to execute arbitrary commands via a long DISPLAY environment variable or a -display command line parameter.
0