CVE-2013-1986: X Libxrandr
Medium severity, CVSS 6.8. EPSS: 1.8% chance of exploitation in the next 30 days.
Multiple integer overflows in X.org libXrandr 1.4.0 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XRRQueryOutputProperty and (2) XRRQueryProviderProperty functions.
Affected products
- X Libxrandr: up to and including 1.4.0; version 1.2.3 only; version 1.2.99.1 only; version 1.2.99.2 only; version 1.2.99.3 only; version 1.2.99.4 only; …
Published 2013-06-15. Last modified 2026-06-16.