CVE-2017-12181 PUBLISHED

xorg-x11-server before 1.19.5 was missing length validation in XFree86 DGA extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.

EPSS 0.84% · 74.6th percentile

Risk Scores

EPSS Score
0.84%
74.6th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSxorg-server-lts-xenial0, 2:1.18.3-1ubuntu2.2~trusty1, 2:1.18.3-1ubuntu2.2~trusty2
Ubuntu:16.04:LTSxorg-server-hwe-16.042:1.19.3-1ubuntu1~16.04.3, 2:1.19.3-1ubuntu1~16.04.2, 2:1.18.4-1ubuntu6.1~16.04.2
Ubuntu:14.04:LTSxorg-server0, 2:1.15.0-1ubuntu4, 2:1.15.0-1ubuntu6
Ubuntu:16.04:LTSxorg-server2:1.17.3-2ubuntu3, 2:1.17.3-2ubuntu4, 2:1.18.1-1ubuntu3

Timeline

References

Open in Interactive Console →