CVE-2017-12177 PUBLISHED

xorg-x11-server before 1.19.5 was vulnerable to integer overflow in ProcDbeGetVisualInfo function allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

EPSS 0.95% · 76.2th percentile

Risk Scores

EPSS Score
0.95%
76.2th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSxorg-server-hwe-16.042:1.19.3-1ubuntu1~16.04.3, 2:1.19.3-1ubuntu1~16.04.2, 2:1.18.4-1ubuntu6.1~16.04.2
Ubuntu:14.04:LTSxorg-server2:1.14.4-1ubuntu1, 2:1.14.4-1ubuntu2, 2:1.14.4.901-0ubuntu2
Ubuntu:16.04:LTSxorg-server2:1.18.4-0ubuntu0.4, 2:1.18.3-1ubuntu2, 2:1.18.3-1ubuntu2.2
Ubuntu:14.04:LTSxorg-server-lts-xenial2:1.18.3-1ubuntu2.3~trusty3, 2:1.18.3-1ubuntu2.3~trusty1, 2:1.18.3-1ubuntu2.2~trusty3

Timeline

References

Open in Interactive Console →