CVE-2023-0494
27.03.2023, 21:15
A vulnerability was found in X.Org. This issue occurs due to a dangling pointer in DeepCopyPointerClasses that can be exploited by ProcXkbSetDeviceInfo() and ProcXkbGetDeviceInfo() to read and write into freed memory. This can lead to local privilege elevation on systems where the X server runs privileged and remote code execution for ssh X forwarding sessions.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| x.org | x_server | 𝑥 < 21.1.7 |
| redhat | enterprise_linux | 8.0 |
| redhat | enterprise_linux | 8.1 |
| redhat | enterprise_linux | 9.0 |
| redhat | enterprise_linux_aus | 8.4 |
| redhat | enterprise_linux_aus | 8.6 |
| redhat | enterprise_linux_desktop | 7.0 |
| redhat | enterprise_linux_eus | 8.4 |
| redhat | enterprise_linux_eus | 8.6 |
| redhat | enterprise_linux_eus | 9.0 |
| redhat | enterprise_linux_for_ibm_z_systems | 7.0 |
| redhat | enterprise_linux_for_ibm_z_systems | 8.0 |
| redhat | enterprise_linux_for_ibm_z_systems_eus | 8.4 |
| redhat | enterprise_linux_for_ibm_z_systems_eus | 8.6 |
| redhat | enterprise_linux_for_power_big_endian | 7.0 |
| redhat | enterprise_linux_for_power_little_endian | 7.0 |
| redhat | enterprise_linux_for_power_little_endian | 8.0 |
| redhat | enterprise_linux_for_power_little_endian | 9.0 |
| redhat | enterprise_linux_for_power_little_endian_eus | 8.4 |
| redhat | enterprise_linux_for_power_little_endian_eus | 8.6 |
| redhat | enterprise_linux_for_scientific_computing | 7.0 |
| redhat | enterprise_linux_server | 7.0 |
| redhat | enterprise_linux_server_aus | 8.2 |
| redhat | enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions | 8.1 |
| redhat | enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions | 8.2 |
| redhat | enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions | 8.4 |
| redhat | enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions | 8.6 |
| redhat | enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions | 9.0 |
| redhat | enterprise_linux_server_tus | 8.2 |
| redhat | enterprise_linux_server_tus | 8.4 |
| redhat | enterprise_linux_server_tus | 8.6 |
| redhat | enterprise_linux_server_update_services_for_sap_solutions | 8.2 |
| redhat | enterprise_linux_server_workstation | 7.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| xorg-server |
| ||||||||||||||
| xorg-server-hwe-16.04 |
| ||||||||||||||
| xorg-server-hwe-18.04 |
| ||||||||||||||
| xorg-server-lts-utopic |
| ||||||||||||||
| xorg-server-lts-vivid |
| ||||||||||||||
| xorg-server-lts-wily |
| ||||||||||||||
| xorg-server-lts-xenial |
| ||||||||||||||
| xwayland |
|
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| xorg-x11-server |
| ||||||||||||||||||||||||||||||||||||||||
| xorg-x11-server-Xvfb |
| ||||||||||||||||||||||||||||||||||||||||
| xorg-x11-server-extra |
| ||||||||||||||||||||||||||||||||||||||||
| xorg-x11-server-sdk |
| ||||||||||||||||||||||||||||||||||||||||
| xorg-x11-server-wayland |
| ||||||||||||||||||||||||||||||||||||||||
| xwayland |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| tigervnc |
| ||||||||||||||||||||||||||||||
| tigervnc-icons |
| ||||||||||||||||||||||||||||||
| tigervnc-license |
| ||||||||||||||||||||||||||||||
| tigervnc-selinux |
| ||||||||||||||||||||||||||||||
| tigervnc-server |
| ||||||||||||||||||||||||||||||
| tigervnc-server-applet |
| ||||||||||||||||||||||||||||||
| tigervnc-server-minimal |
| ||||||||||||||||||||||||||||||
| tigervnc-server-module |
| ||||||||||||||||||||||||||||||
| xorg-x11-server-Xdmx |
| ||||||||||||||||||||||||||||||
| xorg-x11-server-Xephyr |
| ||||||||||||||||||||||||||||||
| xorg-x11-server-Xnest |
| ||||||||||||||||||||||||||||||
| xorg-x11-server-Xorg |
| ||||||||||||||||||||||||||||||
| xorg-x11-server-Xvfb |
| ||||||||||||||||||||||||||||||
| xorg-x11-server-Xwayland |
| ||||||||||||||||||||||||||||||
| xorg-x11-server-common |
| ||||||||||||||||||||||||||||||
| xorg-x11-server-devel |
| ||||||||||||||||||||||||||||||
| xorg-x11-server-source |
|
Common Weakness Enumeration
References