CVE-2023-1393
30.03.2023, 21:15
A flaw was found in X.Org Server Overlay Window. A Use-After-Free may lead to local privilege escalation. If a client explicitly destroys the compositor overlay window (aka COW), the Xserver would leave a dangling pointer to that window in the CompScreen structure, which will trigger a use-after-free later.Enginsight
| Vendor | Product | Version |
|---|---|---|
| x.org | x_server | 𝑥 < 21.1.8 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| tigervnc |
| ||||||||||||||||||||
| xorg-server |
| ||||||||||||||||||||
| xorg-server-hwe-16.04 |
| ||||||||||||||||||||
| xorg-server-hwe-18.04 |
| ||||||||||||||||||||
| xorg-server-lts-utopic |
| ||||||||||||||||||||
| xorg-server-lts-vivid |
| ||||||||||||||||||||
| xorg-server-lts-wily |
| ||||||||||||||||||||
| xorg-server-lts-xenial |
| ||||||||||||||||||||
| xwayland |
|
Common Weakness Enumeration
References