{"id":"ROOT-OS-DEBIAN-11-CVE-2026-33999","summary":"CVE-2026-33999 in xorg-server - Patched by Root","details":"Root has patched CVE-2026-33999 in the xorg-server package for Root:Debian:11. Multiple fixed versions available.","modified":"2026-08-23T10:17:40.481166688Z","published":"2026-08-23T08:32:17Z","upstream":["CVE-2026-33999"],"database_specific":{"distro":"debian","distro_version":"11","severity":"HIGH","source":"Root"},"affected":[{"package":{"name":"xorg-server","ecosystem":"Root:Debian:11"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:1.20.11-1+deb11u13.aikido.10"},{"fixed":"2:1.20.11-1+deb11u17.root.io.8"},{"fixed":"2:1.20.11-1+deb11u17.root.io.9"}]}],"database_specific":{"source":"https://api.root.io/external/osv/ROOT-OS-DEBIAN-11-CVE-2026-33999.json","root_patch_version":"aikido.10","root_patched":true,"total_fixed_versions":3,"upstream_version":"2:1.20.11-1+deb11u13","all_fixed_versions":["2:1.20.11-1+deb11u13.aikido.10","2:1.20.11-1+deb11u17.root.io.8","2:1.20.11-1+deb11u17.root.io.9"]}},{"package":{"name":"rootio-xorg-server","ecosystem":"Root:Debian:11"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:1.20.11-1+deb11u13.aikido.10"},{"fixed":"2:1.20.11-1+deb11u17.root.io.8"},{"fixed":"2:1.20.11-1+deb11u17.root.io.9"}]}],"database_specific":{"upstream_version":"2:1.20.11-1+deb11u13","all_fixed_versions":["2:1.20.11-1+deb11u13.aikido.10","2:1.20.11-1+deb11u17.root.io.8","2:1.20.11-1+deb11u17.root.io.9"],"root_patch_version":"aikido.10","root_patched":true,"source":"https://api.root.io/external/osv/ROOT-OS-DEBIAN-11-CVE-2026-33999.json","total_fixed_versions":3}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}