Xorg Libxi
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Xorg Libxi.
By the Year
In 2026 there have been 7 vulnerabilities in Xorg Libxi with an average score of 6.5 out of ten.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 7 | 6.50 |
It may take a day or so for new Libxi vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Xorg Libxi Security Vulnerabilities
Out-of-Bounds Read in libXi <1.8.4 via XI2 Cookie Conversion
CVE-2026-94282
5.6 - Medium
- September 28, 2026
An out-of-bounds read in libXi's XI2 enter/leave/focus cookie conversion in libXi before 1.8.4 could be used by malicious X server to crash an attached X client.
Out-of-bounds Read
Out-of-Bounds Read in libXi XListInputDevices() before 1.8.4
CVE-2026-94281
6.5 - Medium
- September 24, 2026
An out-of-bounds read in libXi's XListInputDevices() class parsing in libXi before 1.8.4 could be used by malicious X servers to crash an attached X client.
Out-of-bounds Read
Out-of-Bounds Read in libXi <1.8.4 XListInputDevices Crash
CVE-2026-93545
6.5 - Medium
- September 24, 2026
An out-of-bounds read in libXi's XListInputDevices() in libXi before 1.8.4 could be used by malicious X servers to crash an attached X client.
Out-of-bounds Read
LibXi OOB Read via XIQueryDevice before 1.8.4
CVE-2026-93544
6.5 - Medium
- September 24, 2026
An out-of-bounds read in libXi's XI2 XIQueryDevice reply parsing in libXi before 1.8.4 can be used by a malicious X server to crash an attached X client.
Out-of-bounds Read
libXi <1.8.4 OOB Read in XI2 Class Parser
CVE-2026-93543
7.4 - High
- September 24, 2026
An out-of-bounds read in libXi's XI2 class parser in libXi before 1.8.4 could be used by malicious X servers to crash an attached X client.
Out-of-bounds Read
Out-of-Bounds Read in libXi (before 1.8.4) via XI2 Class Parsing
CVE-2026-93542
6.5 - Medium
- September 24, 2026
An out-of-bounds read in libXi's XI2 class parsing via size_classes() and copy_classes() in libXi before 1.8.4 could be used by malicous servers to crash the X client.
Out-of-bounds Read
Out-of-bounds read in libXi XQueryDeviceState (<1.8.4)
CVE-2026-93541
6.5 - Medium
- September 24, 2026
An out-of-bounds read in libXi's XQueryDeviceState() in libXi before 1.8.4 could be used by a
Out-of-bounds Read
X.org libXi 1.7.1 and earlier
CVE-2013-1995
- June 15, 2013
X.org libXi 1.7.1 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to an unexpected sign extension in the XListInputDevices function.
Buffer Overflow
Multiple buffer overflows in X.org libXi 1.7.1 and earlier
CVE-2013-1998
- June 15, 2013
Multiple buffer overflows in X.org libXi 1.7.1 and earlier allow X servers to cause a denial of service (crash) and possibly execute arbitrary code via crafted length or index values to the (1) XGetDeviceButtonMapping, (2) XIPassiveGrabDevice, and (3) XQueryDeviceState functions.
Buffer Overflow
Multiple integer overflows in X.org libXi 1.7.1 and earlier
CVE-2013-1984
- June 15, 2013
Multiple integer overflows in X.org libXi 1.7.1 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XGetDeviceControl, (2) XGetFeedbackControl, (3) XGetDeviceDontPropagateList, (4) XGetDeviceMotionEvents, (5) XIGetProperty, (6) XIGetSelectedEvents, (7) XGetDeviceProperties, and (8) XListInputDevices functions.
Numeric Errors
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Xorg Libxi or by Xorg? Click the Watch button to subscribe.