VYPR

rpm package

opensuse/xorg-x11-server&distro=openSUSE Leap 15.6

pkg:rpm/opensuse/xorg-x11-server&distro=openSUSE%20Leap%2015.6

Vulnerabilities (24)

  • CVE-2025-26596HigFeb 25, 2025
    affected < 21.1.11-150600.5.6.1fixed 21.1.11-150600.5.6.1

    A heap overflow flaw was found in X.Org and Xwayland. The computation of the length in XkbSizeKeySyms() differs from what is written in XkbWriteKeySyms(), which may lead to a heap-based buffer overflow.

  • CVE-2025-26595HigFeb 25, 2025
    affected < 21.1.11-150600.5.6.1fixed 21.1.11-150600.5.6.1

    A buffer overflow flaw was found in X.Org and Xwayland. The code in XkbVModMaskText() allocates a fixed-sized buffer on the stack and copies the names of the virtual modifiers to that buffer. The code fails to check the bounds of the buffer and would copy the data regardless of t

  • CVE-2025-26594HigFeb 25, 2025
    affected < 21.1.11-150600.5.6.1fixed 21.1.11-150600.5.6.1

    A use-after-free flaw was found in X.Org and Xwayland. The root cursor is referenced in the X server as a global variable. If a client frees the root cursor, the internal reference points to freed memory and causes a use-after-free.

  • CVE-2024-9632HigOct 30, 2024
    affected < 21.1.11-150600.5.3.1fixed 21.1.11-150600.5.3.1

    A flaw was found in the X.org server. Due to improperly tracked allocation size in _XkbSetCompatMap, a local attacker may be able to trigger a buffer overflow condition via a specially crafted payload, leading to denial of service or local privilege escalation in distributions wh

Page 2 of 2