CVE-2019-17624: X.org X Server

High severity, CVSS 7.8. EPSS: 3.7% chance of exploitation in the next 30 days.

"" In X.Org X Server 1.20.4, there is a stack-based buffer overflow in the function XQueryKeymap. For example, by sending ct.c_char 1000 times, an attacker can cause a denial of service (application crash) or possibly have unspecified other impact. Note: It is disputed if the X.Org X Server is involved or if there is a stack overflow.

Affected products

  • X.org X Server: up to and including 1.20.4

Published 2019-10-16. Last modified 2026-06-17.