CVE-2025-26599 |
Description: An access to an uninitialized pointer flaw was found in X.Org and Xwayland. The function compCheckRedirect() may fail if it cannot allocate the backing pixmap. In that case, compRedirectWindow() will return a BadAlloc error without validating the window tree marked just before, which leaves the validated data partly initialized and the use of an uninitialized pointer later.
EPSS Score: 0.02%
February 25th, 2025 (5 months ago)
|
CVE-2025-26598 |
Description: An out-of-bounds write flaw was found in X.Org and Xwayland. The function GetBarrierDevice() searches for the pointer device based on its device ID and returns the matching value, or supposedly NULL, if no match was found. However, the code will return the last element of the list if no matching device ID is found, which can lead to out-of-bounds memory access.
EPSS Score: 0.02%
February 25th, 2025 (5 months ago)
|
CVE-2025-26597 |
Description: A buffer overflow flaw was found in X.Org and Xwayland. If XkbChangeTypesOfKey() is called with a 0 group, it will resize the key symbols table to 0 but leave the key actions unchanged. If the same function is later called with a non-zero value of groups, this will cause a buffer overflow because the key actions are of the wrong size.
EPSS Score: 0.02%
February 25th, 2025 (5 months ago)
|
CVE-2025-26596 |
Description: A heap overflow flaw was found in X.Org and Xwayland. The computation of the length in XkbSizeKeySyms() differs from what is written in XkbWriteKeySyms(), which may lead to a heap-based buffer overflow.
EPSS Score: 0.02%
February 25th, 2025 (5 months ago)
|
CVE-2025-26595 |
Description: A buffer overflow flaw was found in X.Org and Xwayland. The code in XkbVModMaskText() allocates a fixed-sized buffer on the stack and copies the names of the virtual modifiers to that buffer. The code fails to check the bounds of the buffer and would copy the data regardless of the size.
EPSS Score: 0.02%
February 25th, 2025 (5 months ago)
|
CVE-2025-26594 |
Description: A use-after-free flaw was found in X.Org and Xwayland. The root cursor is referenced in the X server as a global variable. If a client frees the root cursor, the internal reference points to freed memory and causes a use-after-free.
EPSS Score: 0.02%
February 25th, 2025 (5 months ago)
|
![]() |
Description: No matter the strategy, companies must approach securing unmanaged devices with sensitivity and respect for employee privacy.
February 25th, 2025 (5 months ago)
|
![]() |
Description: Optifye.ai's pitch includes a video where a "boss" yells at a "worker" by calling him a number, and sarcastically saying he's having a bad month.
February 25th, 2025 (5 months ago)
|
CVE-2023-34192 |
Description: Synacor Zimbra Collaboration Suite (ZCS) contains a cross-site scripting (XSS) vulnerability that allows a remote authenticated attacker to execute arbitrary code via a crafted script to the /h/autoSaveDraft function.
February 25th, 2025 (5 months ago)
|
![]() |
Description: Rey Claims to have Leaked the Data of Orange
February 25th, 2025 (5 months ago)
|