Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-9632

Опубликовано: 30 окт. 2024
Источник: debian
EPSS Низкий

Описание

A flaw was found in the X.org server. Due to improperly tracked allocation size in _XkbSetCompatMap, a local attacker may be able to trigger a buffer overflow condition via a specially crafted payload, leading to denial of service or local privilege escalation in distributions where the X.org server is run with root privileges.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
xorg-serverfixed2:21.1.13-3.1package
xwaylandfixed2:24.1.4-1package
xwaylandignoredbookwormpackage

Примечания

  • Fixed by: https://gitlab.freedesktop.org/xorg/xserver/-/commit/85b776571487f52e756f68a069c768757369bfe3

  • https://lists.freedesktop.org/archives/xorg-announce/2024-October/003545.html

EPSS

Процентиль: 25%
0.00082
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
8 месяцев назад

A flaw was found in the X.org server. Due to improperly tracked allocation size in _XkbSetCompatMap, a local attacker may be able to trigger a buffer overflow condition via a specially crafted payload, leading to denial of service or local privilege escalation in distributions where the X.org server is run with root privileges.

CVSS3: 7.8
redhat
8 месяцев назад

A flaw was found in the X.org server. Due to improperly tracked allocation size in _XkbSetCompatMap, a local attacker may be able to trigger a buffer overflow condition via a specially crafted payload, leading to denial of service or local privilege escalation in distributions where the X.org server is run with root privileges.

CVSS3: 7.8
nvd
8 месяцев назад

A flaw was found in the X.org server. Due to improperly tracked allocation size in _XkbSetCompatMap, a local attacker may be able to trigger a buffer overflow condition via a specially crafted payload, leading to denial of service or local privilege escalation in distributions where the X.org server is run with root privileges.

CVSS3: 7.8
msrc
7 месяцев назад

Описание отсутствует

suse-cvrf
8 месяцев назад

Security update for xorg-x11-server

EPSS

Процентиль: 25%
0.00082
Низкий