CVE-2012-2118: X.org x11

High severity, CVSS 10.0. EPSS: 2.7% chance of exploitation in the next 30 days.

Format string vulnerability in the LogVHdrMessageVerb function in os/log.c in X.Org X11 1.11 allows attackers to cause a denial of service or possibly execute arbitrary code via format string specifiers in an input device name.

Affected products

  • X.org x11: version 1.11 only

Published 2012-05-18. Last modified 2026-06-16.