CVE-2017-13721 PUBLISHED

In X.Org Server (aka xserver and xorg-server) before 1.19.4, an attacker authenticated to an X server with the X shared memory extension enabled can cause aborts of the X server or replace shared memory segments of other X clients in the same session.

EPSS 0.09% · 24.7th percentile

Risk Scores

EPSS Score
0.09%
24.7th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSxorg-server-hwe-16.042:1.19.3-1ubuntu1~16.04.2, 2:1.18.4-1ubuntu6.1~16.04.2, 2:1.18.4-1ubuntu6.1~16.04.1
Ubuntu:14.04:LTSxorg-server2:1.14.3-5ubuntu1, 2:1.14.4-1ubuntu1, 2:1.14.4-1ubuntu2
Ubuntu:16.04:LTSxorg-server2:1.18.4-0ubuntu0.2, 2:1.18.3-1ubuntu2, 2:1.18.3-1ubuntu2.2
Ubuntu:14.04:LTSxorg-server-lts-xenial2:1.18.3-1ubuntu2.3~trusty2, 2:1.18.3-1ubuntu2.2~trusty1, 0

Timeline

References

Open in Interactive Console →