Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pw35-9xmg-v8xw

Опубликовано: 17 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

A flaw was found in the XFIXES extension. The XFixesSetClientDisconnectMode handler does not validate the request length, allowing a client to read unintended memory from previous requests.

A flaw was found in the XFIXES extension. The XFixesSetClientDisconnectMode handler does not validate the request length, allowing a client to read unintended memory from previous requests.

EPSS

Процентиль: 29%
0.00367
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 6.1
ubuntu
около 1 года назад

A flaw was found in the XFIXES extension. The XFixesSetClientDisconnectMode handler does not validate the request length, allowing a client to read unintended memory from previous requests.

CVSS3: 6.1
redhat
около 1 года назад

A flaw was found in the XFIXES extension. The XFixesSetClientDisconnectMode handler does not validate the request length, allowing a client to read unintended memory from previous requests.

CVSS3: 6.1
nvd
около 1 года назад

A flaw was found in the XFIXES extension. The XFixesSetClientDisconnectMode handler does not validate the request length, allowing a client to read unintended memory from previous requests.

CVSS3: 5.5
msrc
12 месяцев назад

Xorg-x11-server-xwayland: xorg-x11-server: tigervnc: data leak in xfixes extension's xfixessetclientdisconnectmode

CVSS3: 6.1
debian
около 1 года назад

A flaw was found in the XFIXES extension. The XFixesSetClientDisconnec ...

EPSS

Процентиль: 29%
0.00367
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-200