HIGH

CVE-2019-17624

CVSS v3

7.8

HIGH

EPSS Score

16.2%

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

"" In X.Org X Server 1.20.4, there is a stack-based buffer overflow in the function XQueryKeymap. For example, by sending ct.c_char 1000 times, an attacker can cause a denial of service (application crash) or possibly have unspecified other impact. Note: It is disputed if the X.Org X Server is involved or if there is a stack overflow.

Technical details

Published
10/16/2019

Frequently asked questions

What is CVE-2019-17624?

"" In X.Org X Server 1.20.4, there is a stack-based buffer overflow in the function XQueryKeymap. For example, by sending ct.c_char 1000 times, an attacker can cause a denial of service (application crash) or possibly have unspecified other impact. Note: It is disputed if the X.Org X Server is involved or if there is a stack overflow.

Is CVE-2019-17624 actively exploited?

Active exploitation of CVE-2019-17624 has not been confirmed. The EPSS score is 16.2%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2019-17624?

CVE-2019-17624 has a CVSS v3 base score of 7.8 (HIGH severity).

Is CVE-2019-17624 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.