Uninitialized data in endianness conversion in the XEvent handling of the X.Org X Server before 2017-06-19 allowed authenticated malicious users to access potentially privileged data from the X server.
The product does not initialize or incorrectly initializes a resource, which might leave the resource in an unexpected state when it is accessed or used.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Xorg-server | X.org | * | 1.19.3 (including) |
Xorg-server | Ubuntu | devel | * |
Xorg-server | Ubuntu | trusty | * |
Xorg-server | Ubuntu | xenial | * |
Xorg-server | Ubuntu | yakkety | * |
Xorg-server | Ubuntu | zesty | * |
Xorg-server-hwe-16.04 | Ubuntu | xenial | * |
Xorg-server-lts-utopic | Ubuntu | trusty | * |
Xorg-server-lts-vivid | Ubuntu | trusty | * |
Xorg-server-lts-wily | Ubuntu | trusty | * |
Xorg-server-lts-xenial | Ubuntu | trusty | * |