Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2026-34001

Опубликовано: 06 мая 2026
Источник: msrc
CVSS3: 7.8
EPSS Низкий

Описание

Xorg: xwayland: x.org x server: use-after-free vulnerability leads to server crash and potential memory corruption

Обновления

ПродуктСтатьяОбновление
cbl2 xorg-x11-server 1.20.10-16 on CBL-Mariner 2.0
azl3 xorg-x11-server-Xwayland 24.1.6-3 on Azure Linux 3.0
-
azl3 xorg-x11-server-Xwayland 24.1.6-4 on Azure Linux 3.0
-

Показывать по

EPSS

Процентиль: 19%
0.00264
Низкий

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
5 месяцев назад

A flaw was found in the X.Org X server. This use-after-free vulnerability occurs in the XSYNC fence triggering logic, specifically within the miSyncTriggerFence() function. An attacker with access to the X11 server can exploit this without user interaction, leading to a server crash and potentially enabling memory corruption. This could result in a denial of service or further compromise of the system.

CVSS3: 7.8
redhat
5 месяцев назад

A flaw was found in the X.Org X server. This use-after-free vulnerability occurs in the XSYNC fence triggering logic, specifically within the miSyncTriggerFence() function. An attacker with access to the X11 server can exploit this without user interaction, leading to a server crash and potentially enabling memory corruption. This could result in a denial of service or further compromise of the system.

CVSS3: 7.8
nvd
5 месяцев назад

A flaw was found in the X.Org X server. This use-after-free vulnerability occurs in the XSYNC fence triggering logic, specifically within the miSyncTriggerFence() function. An attacker with access to the X11 server can exploit this without user interaction, leading to a server crash and potentially enabling memory corruption. This could result in a denial of service or further compromise of the system.

CVSS3: 7.8
debian
5 месяцев назад

A flaw was found in the X.Org X server. This use-after-free vulnerabil ...

CVSS3: 7.8
github
5 месяцев назад

A flaw was found in the X.Org X server. This use-after-free vulnerability occurs in the XSYNC fence triggering logic, specifically within the miSyncTriggerFence() function. An attacker with access to the X11 server can exploit this without user interaction, leading to a server crash and potentially enabling memory corruption. This could result in a denial of service or further compromise of the system.

EPSS

Процентиль: 19%
0.00264
Низкий

7.8 High

CVSS3