ZDI-CAN-25543: ZDI-25-141: X.Org Server XkbSizeKeySyms Heap-based Buffer Overflow Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of X.Org Server. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2025-26596.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-25543?
The severity of ZDI-CAN-25543 is rated at 7.8 on the CVSS scale, indicating a high potential for impact.
How do I fix ZDI-CAN-25543?
To fix ZDI-CAN-25543, update to the latest version of X.Org Server that addresses this vulnerability.
Who is affected by ZDI-CAN-25543?
Organizations using X.Org Server in their systems may be affected by ZDI-CAN-25543.
What type of vulnerability is ZDI-CAN-25543?
ZDI-CAN-25543 is a privilege escalation vulnerability that allows local attackers to gain elevated access.
What requirements must be met to exploit ZDI-CAN-25543?
An attacker must have the ability to execute low-privileged code on the target system to exploit ZDI-CAN-25543.