跳转到帖子

Red Hat: CVE-2023-6816: xorg-x11-server: Heap buffer overflow in DeviceFocusEvent and ProcXIQueryPointer (Multiple Advisories)

recommended_posts

发布于
  • Members

Red Hat: CVE-2023-6816: xorg-x11-server: Heap buffer overflow in DeviceFocusEvent and ProcXIQueryPointer (Multiple Advisories)

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
01/18/2024
Created
01/30/2024
Added
01/29/2024
Modified
01/30/2025

Description

A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQueryPointer reply contain a bit for each logical button currently down. Buttons can be arbitrarily mapped to any value up to 255, but the X.Org Server was only allocating space for the device's particular number of buttons, leading to a heap overflow if a bigger value was used.

Solution(s)

  • redhat-upgrade-tigervnc
  • redhat-upgrade-tigervnc-debuginfo
  • redhat-upgrade-tigervnc-debugsource
  • redhat-upgrade-tigervnc-icons
  • redhat-upgrade-tigervnc-license
  • redhat-upgrade-tigervnc-selinux
  • redhat-upgrade-tigervnc-server
  • redhat-upgrade-tigervnc-server-applet
  • redhat-upgrade-tigervnc-server-debuginfo
  • redhat-upgrade-tigervnc-server-minimal
  • redhat-upgrade-tigervnc-server-minimal-debuginfo
  • redhat-upgrade-tigervnc-server-module
  • redhat-upgrade-tigervnc-server-module-debuginfo
  • redhat-upgrade-xorg-x11-server-common
  • redhat-upgrade-xorg-x11-server-debuginfo
  • redhat-upgrade-xorg-x11-server-debugsource
  • redhat-upgrade-xorg-x11-server-devel
  • redhat-upgrade-xorg-x11-server-source
  • redhat-upgrade-xorg-x11-server-xdmx
  • redhat-upgrade-xorg-x11-server-xdmx-debuginfo
  • redhat-upgrade-xorg-x11-server-xephyr
  • redhat-upgrade-xorg-x11-server-xephyr-debuginfo
  • redhat-upgrade-xorg-x11-server-xnest
  • redhat-upgrade-xorg-x11-server-xnest-debuginfo
  • redhat-upgrade-xorg-x11-server-xorg
  • redhat-upgrade-xorg-x11-server-xorg-debuginfo
  • redhat-upgrade-xorg-x11-server-xvfb
  • redhat-upgrade-xorg-x11-server-xvfb-debuginfo
  • redhat-upgrade-xorg-x11-server-xwayland
  • redhat-upgrade-xorg-x11-server-xwayland-debuginfo
  • redhat-upgrade-xorg-x11-server-xwayland-debugsource

References

  • CVE-2023-6816
  • RHSA-2024:0320
  • RHSA-2024:0557
  • RHSA-2024:0597
  • RHSA-2024:0607
  • RHSA-2024:0614
  • RHSA-2024:0621
  • RHSA-2024:0626
  • RHSA-2024:0629
  • RHSA-2024:2169
  • RHSA-2024:2170
  • RHSA-2024:2996
View more
  • 查看数 703
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。
注意:你的帖子需要版主批准后才能看到。

游客
回帖…