<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T16:30:29.350045+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2022:1917</id>
    <title>ALSA-2022:1917 — Moderate: xorg-x11-server and xorg-x11-server-Xwayland security update</title>
    <updated>2026-10-02T16:30:29.663438+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: xorg-x11-server-Xdmx, AlmaLinux:8: xorg-x11-server-Xephyr, AlmaLinux:8: xorg-x11-server-Xnest, AlmaLinux:8: xorg-x11-server-Xorg, AlmaLinux:8: xorg-x11-server-Xvfb, AlmaLinux:8: xorg-x11-server-Xwayland, AlmaLinux:8: xorg-x11-server-common, AlmaLinux:8: xorg-x11-server-devel, AlmaLinux:8: xorg-x11-server-source</p>
<p>X.Org is an open-source implementation of the X Window System. It provides the basic low-level functionality that full-fledged graphical user interfaces are designed upon.
Xwayland is an X server for running X clients under Wayland.
The following packages have been upgraded to a later upstream version: xorg-x11-server-Xwayland (21.1.3). (BZ#2015842)
Security Fix(es):
* xorg-x11-server: SProcRenderCompositeGlyphs out-of-bounds access (CVE-2021-4008)
* xorg-x11-server: SProcXFixesCreatePointerBarrier out-of-bounds access (CVE-2021-4009)
* xorg-x11-server: SProcScreenSaverSuspend out-of-bounds access (CVE-2021-4010)
* xorg-x11-server: SwapCreateRegister out-of-bounds access (CVE-2021-4011)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2022:1917"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-00349</id>
    <title>bdu:2022-00349</title>
    <updated>2026-10-02T16:30:29.663513+00:00</updated>
    <content>bdu:2022-00349</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-00349"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2021-4011</id>
    <title>Withdrawn: BELL-CVE-2021-4011 — CVE-2021-4011 does not affect BellSoft software</title>
    <updated>2026-10-02T16:30:29.663531+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2021-4011"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2022-04966</id>
    <title>cnvd-2022-04966</title>
    <updated>2026-10-02T16:30:29.663546+00:00</updated>
    <content>cnvd-2022-04966</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2022-04966"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-21261</id>
    <title>EUVD-2026-21261</title>
    <updated>2026-10-02T16:30:29.663558+00:00</updated>
    <content>EUVD-2026-21261</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-21261"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-4011</id>
    <title>fkie_cve-2021-4011</title>
    <updated>2026-10-02T16:30:29.663568+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in xorg-x11-server in versions before 21.1.2 and before 1.20.14. An out-of-bounds access can occur in the SwapCreateRegister function. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-4011"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-pxmq-rrfv-xh8v</id>
    <title>GHSA-pxmq-rrfv-xh8v</title>
    <updated>2026-10-02T16:30:29.663588+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in xorg-x11-server in versions before 21.1.2 and before 1.20.14. An out-of-bounds access can occur in the SwapCreateRegister function. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-pxmq-rrfv-xh8v"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-4011</id>
    <title>gsd-2021-4011</title>
    <updated>2026-10-02T16:30:29.663602+00:00</updated>
    <content>gsd-2021-4011</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-4011"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1468</id>
    <title>OESA-2021-1468 — xorg-x11-server security update</title>
    <updated>2026-10-02T16:30:29.663612+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: xorg-x11-server, openEuler:20.03-LTS-SP2: xorg-x11-server</p>
<p>Xorg server common files.

Security Fix(es):

A security issue has been found in X.Org before version 21.1.2 and Xwayland before version 21.1.4. The handler for the CompositeGlyphs request of the Render extension does not properly validate the request length leading to out of bounds memory write. This can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for SSH X forwarding sessions.(CVE-2021-4008)

A security issue has been found in X.Org before version 21.1.2 and Xwayland before version 21.1.4. The handler for the CreatePointerBarrier request of the XFixes extension does not properly validate the request length leading to out of bounds memory write. This can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for SSH X forwarding sessions.(CVE-2021-4009)

A security issue has been found in X.Org before version 21.1.2 and Xwayland before version 21.1.4. The handler for the Suspend request of the Screen Saver extension does not properly validate the request length leading to an out of bounds memory write. This can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for SSH X forwarding sessions.(CVE-2021-4010)

A security issue has been found in X.Org before version 21.1.2 and Xwayland before version 21.1.4. The handlers for the RecordCreateContext and RecordRegisterClients requests…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1468"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2021:1606-1</id>
    <title>openSUSE-SU-2021:1606-1 — Security update for xorg-x11-server</title>
    <updated>2026-10-02T16:30:29.663646+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for xorg-x11-server</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2021:1606-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2021:14867-1</id>
    <title>SUSE-SU-2021:14867-1 — Security update for xorg-x11-server</title>
    <updated>2026-10-02T16:30:29.663663+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for xorg-x11-server</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2021:14867-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-4011</id>
    <title>UBUNTU-CVE-2021-4011</title>
    <updated>2026-10-02T16:30:29.663677+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: xorg-server, Ubuntu:Pro:16.04:LTS: xorg-server, Ubuntu:Pro:16.04:LTS: xorg-server-hwe-16.04, Ubuntu:18.04:LTS: xorg-server, Ubuntu:18.04:LTS: xorg-server-hwe-18.04, Ubuntu:20.04:LTS: xorg-server, Ubuntu:22.04:LTS: xorg-server, Ubuntu:22.04:LTS: xwayland</p>
<p>A flaw was found in xorg-x11-server in versions before 21.1.2 and before 1.20.14. An out-of-bounds access can occur in the SwapCreateRegister function. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-4011"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0302</id>
    <title>WID-SEC-W-2022-0302 — Xerox FreeFlow Print Server: Mehrere Schwachstellen ermöglichen Ausführen von beliebigem Programmcode mit Administrator…</title>
    <updated>2026-10-02T16:30:29.663706+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Xerox FreeFlow Print Server ausnutzen, um beliebigen Programmcode auszuführen, einen Cross-Site-Scripting-Angriff durchzuführen, Informationen offenzulegen, einen Denial-of-Service-Zustand zu verursachen oder Dateien zu manipulieren.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0302"/>
  </entry>
</feed>
