Количество 9
Количество 9
CVE-2026-50257
A use-after-free flaw was found in the X.Org X server and Xwayland in miSyncDestroyFence(). A client that sets up multiple fence triggers can trigger a use-after-free function pointer call. An attacker would connect to the X server to set up a fence and await that fence, then a second X connection destroys the fence, causing the use-after-free. This may be used to crash the server, or for privilege escalation if the X server runs as root.
CVE-2026-50257
A use-after-free flaw was found in the X.Org X server and Xwayland in miSyncDestroyFence(). A client that sets up multiple fence triggers can trigger a use-after-free function pointer call. An attacker would connect to the X server to set up a fence and await that fence, then a second X connection destroys the fence, causing the use-after-free. This may be used to crash the server, or for privilege escalation if the X server runs as root.
CVE-2026-50257
A use-after-free flaw was found in the X.Org X server and Xwayland in miSyncDestroyFence(). A client that sets up multiple fence triggers can trigger a use-after-free function pointer call. An attacker would connect to the X server to set up a fence and await that fence, then a second X connection destroys the fence, causing the use-after-free. This may be used to crash the server, or for privilege escalation if the X server runs as root.
CVE-2026-50257
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in misyncdestroyfence()
CVE-2026-50257
A use-after-free flaw was found in the X.Org X server and Xwayland in ...
GHSA-5p7p-jgvj-4v95
A use-after-free flaw was found in the X.Org X server and Xwayland in miSyncDestroyFence(). A client that sets up multiple fence triggers can trigger a use-after-free function pointer call. An attacker would connect to the X server to set up a fence and await that fence, then a second X connection destroys the fence, causing the use-after-free. This may be used to crash the server, or for privilege escalation if the X server runs as root.
BDU:2026-08143
Уязвимость функции miSyncDestroyFence() реализации протокола Wayland для X.Org XWaylan и реализации сервера X Window System X.Org Server, позволяющая нарушителю повысить свои привилегии и вызвать отказ в обслуживании
ELSA-2026-26709
ELSA-2026-26709: xorg-x11-server security, bug fix, and enhancement update (IMPORTANT)
ELSA-2026-26562
ELSA-2026-26562: xorg-x11-server-Xwayland security, bug fix, and enhancement update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-50257 A use-after-free flaw was found in the X.Org X server and Xwayland in miSyncDestroyFence(). A client that sets up multiple fence triggers can trigger a use-after-free function pointer call. An attacker would connect to the X server to set up a fence and await that fence, then a second X connection destroys the fence, causing the use-after-free. This may be used to crash the server, or for privilege escalation if the X server runs as root. | CVSS3: 7.8 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-50257 A use-after-free flaw was found in the X.Org X server and Xwayland in miSyncDestroyFence(). A client that sets up multiple fence triggers can trigger a use-after-free function pointer call. An attacker would connect to the X server to set up a fence and await that fence, then a second X connection destroys the fence, causing the use-after-free. This may be used to crash the server, or for privilege escalation if the X server runs as root. | CVSS3: 7.8 | 0% Низкий | 2 месяца назад | |
CVE-2026-50257 A use-after-free flaw was found in the X.Org X server and Xwayland in miSyncDestroyFence(). A client that sets up multiple fence triggers can trigger a use-after-free function pointer call. An attacker would connect to the X server to set up a fence and await that fence, then a second X connection destroys the fence, causing the use-after-free. This may be used to crash the server, or for privilege escalation if the X server runs as root. | CVSS3: 7.8 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-50257 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in misyncdestroyfence() | CVSS3: 6.6 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-50257 A use-after-free flaw was found in the X.Org X server and Xwayland in ... | CVSS3: 7.8 | 0% Низкий | около 2 месяцев назад | |
GHSA-5p7p-jgvj-4v95 A use-after-free flaw was found in the X.Org X server and Xwayland in miSyncDestroyFence(). A client that sets up multiple fence triggers can trigger a use-after-free function pointer call. An attacker would connect to the X server to set up a fence and await that fence, then a second X connection destroys the fence, causing the use-after-free. This may be used to crash the server, or for privilege escalation if the X server runs as root. | CVSS3: 7.8 | 0% Низкий | около 2 месяцев назад | |
BDU:2026-08143 Уязвимость функции miSyncDestroyFence() реализации протокола Wayland для X.Org XWaylan и реализации сервера X Window System X.Org Server, позволяющая нарушителю повысить свои привилегии и вызвать отказ в обслуживании | CVSS3: 7.8 | 0% Низкий | 3 месяца назад | |
ELSA-2026-26709 ELSA-2026-26709: xorg-x11-server security, bug fix, and enhancement update (IMPORTANT) | около 2 месяцев назад | |||
ELSA-2026-26562 ELSA-2026-26562: xorg-x11-server-Xwayland security, bug fix, and enhancement update (IMPORTANT) | около 2 месяцев назад |
Уязвимостей на страницу