CVE-2023-6478
13.12.2023, 07:15
A flaw was found in xorg-server. A specially crafted request to RRChangeProviderProperty or RRChangeOutputProperty can trigger an integer overflow which may lead to a disclosure of sensitive information.Enginsight
Vendor | Product | Version |
---|---|---|
x.org | x_server | 𝑥 < 21.1.10 |
x.org | xwayland | 𝑥 < 23.2.3 |
redhat | enterprise_linux_eus | 9.2 |
debian | debian_linux | 10.0 |
debian | debian_linux | 11.0 |
debian | debian_linux | 12.0 |
tigervnc | tigervnc | - |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
xorg |
| ||||||||||||||||||
xorg-hwe-16.04 |
| ||||||||||||||||||
xorg-hwe-18.04 |
| ||||||||||||||||||
xorg-server |
| ||||||||||||||||||
xorg-server-hwe-16.04 |
| ||||||||||||||||||
xorg-server-hwe-18.04 |
| ||||||||||||||||||
xorg-server-lts-utopic |
| ||||||||||||||||||
xorg-server-lts-vivid |
| ||||||||||||||||||
xorg-server-lts-wily |
| ||||||||||||||||||
xorg-server-lts-xenial |
| ||||||||||||||||||
xwayland |
|
References