A flaw was found in xorg-x11-server before 1.20.3. An incorrect permission check for -modulepath and -logfile options when starting Xorg. X server allows unprivileged users with the ability to log in to the system via physical console to escalate their privileges and run arbitrary code under root privileges.

Published: 2018-10-25

CVSS: 7.2

CVSS Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Download CVE-2018-14665 POC (Proof-of-Concept) here:

Tip: Download official Tor Browser at https://www.torproject.org/download/ to access .onion links.

https://connollyfinan.ie/poc-172-cve-2025-49717/

https://connollyfinan.ie/poc-203-cve-2024-7029/

https://connollyfinan.ie/poc-535-cve-2023-20867/