Ilja van Sprundel discovered a multitude of security issues in the X.Org X server. An attacker able to connect to an X server, either locally or remotely, could use these issues to cause the X server to crash or execute arbitrary code resulting in possible privilege escalation.
{ "binaries": [ { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xdmx" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xdmx-tools" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xnest" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xorg-server-source" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xserver-common" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xserver-xephyr" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xserver-xorg-core" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xserver-xorg-dev" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xserver-xorg-xmir" }, { "binary_version": "2:1.15.1-0ubuntu2.4", "binary_name": "xvfb" } ], "availability": "No subscription required" }
{ "cves_map": { "cves": [ { "severity": [ { "score": "medium", "type": "Ubuntu" } ], "id": "CVE-2014-8091" }, { "severity": [ { "score": "medium", "type": "Ubuntu" } ], "id": "CVE-2014-8092" }, { "severity": [ { "score": "medium", "type": "Ubuntu" } ], "id": "CVE-2014-8093" }, { "severity": [ { "score": "medium", "type": "Ubuntu" } ], "id": "CVE-2014-8094" }, { "severity": [ { "score": "medium", "type": "Ubuntu" } ], "id": "CVE-2014-8095" }, { "severity": [ { "score": "medium", "type": "Ubuntu" } ], "id": "CVE-2014-8096" }, { "severity": [ { "score": "medium", "type": "Ubuntu" } ], "id": "CVE-2014-8097" }, { "severity": [ { "score": "medium", "type": "Ubuntu" } ], "id": "CVE-2014-8098" }, { "severity": [ { "score": "medium", "type": "Ubuntu" } ], "id": "CVE-2014-8099" }, { "severity": [ { "score": "medium", "type": "Ubuntu" } ], "id": "CVE-2014-8100" }, { "severity": [ { "score": "medium", "type": "Ubuntu" } ], "id": "CVE-2014-8101" }, { "severity": [ { "score": "medium", "type": "Ubuntu" } ], "id": "CVE-2014-8102" }, { "severity": [ { "score": "medium", "type": "Ubuntu" } ], "id": "CVE-2014-8103" } ], "ecosystem": "Ubuntu:14.04:LTS" } }