CVE-2015-0255: Infoleak
Last updated 24 July 2024
Other sources
X.Org Server (aka xserver and xorg-server) before 1.16.3 and 1.17.x before 1.17.1 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (crash) via a crafted string length value in a XkbSetGeometry request.
— Launchpad
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2015-0255?
CVE-2015-0255 is a vulnerability in X.Org Server that allows remote attackers to obtain sensitive information from process memory or cause a denial of service (crash) via a crafted string length value in a XkbSetGeometry request.
What is the severity of CVE-2015-0255?
The severity of CVE-2015-0255 is medium, with a severity value of 6.4.
Which software versions are affected by CVE-2015-0255?
X.Org Server versions before 1.16.3 and 1.17.x before 1.17.1 are affected by CVE-2015-0255.
How can the vulnerability be fixed?
To fix CVE-2015-0255, update X.Org Server to version 1.16.3 or apply the necessary security patches.
Where can I find more information about CVE-2015-0255?
You can find more information about CVE-2015-0255 in the following references: - [CVE Mitre](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0255) - [Openwall](http://www.openwall.com/lists/oss-security/2015/02/10/18) - [Ubuntu Security Notice](https://ubuntu.com/security/notices/USN-2500-1)