PT-2013-1241 · X.Org · X.Org Server+1

Published

2013-10-16

·

Updated

2014-05-15

·

CVE-2013-1056

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions X.org X server version 1.13.3 and earlier xorg-server versions prior to 1.14.3-r2
Description The issue allows local users to cause a denial of service or possibly gain privileges via vectors involving cached xkb files. Additionally, multiple vulnerabilities in the xorg-server package may lead to violations of confidentiality, integrity, and availability of protected information, and can be exploited remotely.
Recommendations For X.org X server version 1.13.3 and earlier, update to a version later than 1.13.3. For xorg-server versions prior to 1.14.3-r2, update to version 1.14.3-r2 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BDU:2015-09727
CVE-2013-1056
USN-1990-1

Affected Products

X.Org Server
Xorg-Server