Lucene search

K
redhatcveRedhat.comRH:CVE-2018-14600
HistoryAug 28, 2018 - 8:25 p.m.

CVE-2018-14600

2018-08-2820:25:32
redhat.com
access.redhat.com
11

0.05 Low

EPSS

Percentile

92.9%

An out of bounds write, limited to NULL bytes, was discovered in libX11 in functions XListExtensions() and XGetFontPath(). The length field is considered as a signed value, which makes the library access memory before the intended buffer. An attacker who can either configure a malicious X server or modify the data coming from one could use this flaw to make the program crash or have other unspecified effects, caused by the memory corruption.