Lesstif is a X11/Motif compatibility library with a narrow product scope, historically associated with graphical user interface applications on Unix and Linux systems. The recorded vulnerability instances in this library reflect general categorization constraints rather than a well-defined structural weakness pattern. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Lesstif over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2004-0914HIGH Multiple vulnerabilities in libXpm for 6.8.1 and earlier, as used in XFree86 and other packages, include (1) multiple integer overflows, (2) out-of-bounds memory accesses, (3) dire | Jan 10, 2005 | 10.0 | 28 | NO | NO |
CVE-2005-0605HIGH scan.c for LibXPM may allow attackers to execute arbitrary code via a negative bitmap_unit value that leads to a buffer overflow. | Mar 2, 2005 | 7.5 | 21 | NO | NO |
CVE-2006-4124MEDIUM The libXm library in LessTif 0.95.0 and earlier allows local users to gain privileges via the DEBUG_FILE environment variable, which is used to create world-writable files when lib | Aug 14, 2006 | 4.6 | 14 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Lesstif.
Media articles that mention a CVE ID that affects a product developed by Lesstif — matched by CVE ID, not by vendor name.