Hacker Read top | best | new | newcomments | leaders | about | bookmarklet login

Xorg network code is considered well audited and very few problems have been found over the years. Please stop making stuff up.


view as:

The most recent release had to be rolled back after four zero-day remote privilege escalations were found and given CVEs. The network code may be fine, but everything exposed to the network is not, and manpower is dwindling to address problems.

Here are a zillion memory safety problems in X libraries typical of what happens when you point a fuzzer at 1980s code: https://lists.x.org/archives/xorg-devel/2013-May/036276.html

Legal | privacy