CVE-2013-1988: X Libxres

Medium severity, CVSS 6.8. EPSS: 2% chance of exploitation in the next 30 days.

Multiple integer overflows in X.org libXRes 1.0.6 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XResQueryClients and (2) XResQueryClientResources functions.

Affected products

  • X Libxres: up to and including 1.0.6; version 1.0.1 only; version 1.0.2 only; version 1.0.3 only; version 1.0.4 only; version 1.0.5 only

Published 2013-06-15. Last modified 2026-06-16.