X.Org X server
cpe:2.3:a:x.org:x_server:*:*:*:*:*:*:*, +3 more
- >= 1.15
A use-after-free vulnerability has been identified in the X.Org X server and Xwayland. This issue arises in the X11 Present extension when processing notifications related to presentation events. Improper error handling can create dangling pointers, leading to a use-after-free condition. As a result, memory corruption or crashes may occur, with the potential for an attacker to execute arbitrary code or cause a denial-of-service condition. This vulnerability has existed since Xorg version 1.15.
Exploitation of this vulnerability can result in memory corruption or a crash, with the potential for arbitrary code execution. Additionally, the vulnerability can cause a denial-of-service condition by crashing the application or causing it to exit or restart.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.