Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-1393

Опубликовано: 30 мар. 2023
Источник: nvd
CVSS3: 7.8
EPSS Низкий

Описание

A flaw was found in X.Org Server Overlay Window. A Use-After-Free may lead to local privilege escalation. If a client explicitly destroys the compositor overlay window (aka COW), the Xserver would leave a dangling pointer to that window in the CompScreen structure, which will trigger a use-after-free later.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:x.org:xorg-server:*:*:*:*:*:*:*:*
Версия до 21.1.8 (исключая)
Конфигурация 2

Одно из

cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*

EPSS

Процентиль: 19%
0.0006
Низкий

7.8 High

CVSS3

Дефекты

CWE-416
CWE-416

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 2 лет назад

A flaw was found in X.Org Server Overlay Window. A Use-After-Free may lead to local privilege escalation. If a client explicitly destroys the compositor overlay window (aka COW), the Xserver would leave a dangling pointer to that window in the CompScreen structure, which will trigger a use-after-free later.

CVSS3: 7.8
redhat
около 2 лет назад

A flaw was found in X.Org Server Overlay Window. A Use-After-Free may lead to local privilege escalation. If a client explicitly destroys the compositor overlay window (aka COW), the Xserver would leave a dangling pointer to that window in the CompScreen structure, which will trigger a use-after-free later.

CVSS3: 7.8
msrc
9 месяцев назад

Описание отсутствует

CVSS3: 7.8
debian
около 2 лет назад

A flaw was found in X.Org Server Overlay Window. A Use-After-Free may ...

suse-cvrf
около 2 лет назад

Security update for xwayland

EPSS

Процентиль: 19%
0.0006
Низкий

7.8 High

CVSS3

Дефекты

CWE-416
CWE-416