CVE-2013-1995: X.org Libxi
Medium severity, CVSS 6.8. EPSS: 1.9% chance of exploitation in the next 30 days.
X.org libXi 1.7.1 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to an unexpected sign extension in the XListInputDevices function.
Affected products
- X.org Libxi: up to and including 1.7.1; version 1.5.0 only; version 1.5.99.2 only; version 1.5.99.3 only; version 1.6.0 only; version 1.6.1 only; …
Published 2013-06-15. Last modified 2026-06-16.