Ilja van Sprundel discovered a multitude of security issues in the X.Org X server. An attacker able to connect to an X server, either locally or remotely, could use these issues to cause the X server to crash or execute arbitrary code resulting in possible privilege escalation.
{ "availability": "No subscription required", "binaries": [ { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xdmx" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xdmx-tools" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xnest" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xorg-server-source" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xserver-common" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xserver-xephyr" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xserver-xorg-core" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xserver-xorg-dev" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xserver-xorg-xmir" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xvfb" } ] }
{ "cves_map": { "ecosystem": "Ubuntu:14.04:LTS", "cves": [ { "id": "CVE-2014-8091", "severity": [ { "type": "Ubuntu", "score": "medium" } ] }, { "id": "CVE-2014-8092", "severity": [ { "type": "Ubuntu", "score": "medium" } ] }, { "id": "CVE-2014-8093", "severity": [ { "type": "Ubuntu", "score": "medium" } ] }, { "id": "CVE-2014-8094", "severity": [ { "type": "Ubuntu", "score": "medium" } ] }, { "id": "CVE-2014-8095", "severity": [ { "type": "Ubuntu", "score": "medium" } ] }, { "id": "CVE-2014-8096", "severity": [ { "type": "Ubuntu", "score": "medium" } ] }, { "id": "CVE-2014-8097", "severity": [ { "type": "Ubuntu", "score": "medium" } ] }, { "id": "CVE-2014-8098", "severity": [ { "type": "Ubuntu", "score": "medium" } ] }, { "id": "CVE-2014-8099", "severity": [ { "type": "Ubuntu", "score": "medium" } ] }, { "id": "CVE-2014-8100", "severity": [ { "type": "Ubuntu", "score": "medium" } ] }, { "id": "CVE-2014-8101", "severity": [ { "type": "Ubuntu", "score": "medium" } ] }, { "id": "CVE-2014-8102", "severity": [ { "type": "Ubuntu", "score": "medium" } ] }, { "id": "CVE-2014-8103", "severity": [ { "type": "Ubuntu", "score": "medium" } ] } ] } }