Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-46340

Опубликовано: 14 дек. 2022
Источник: redhat
CVSS3: 8.8

Описание

A vulnerability was found in X.Org. This security flaw occurs becuase the swap handler for the XTestFakeInput request of the XTest extension may corrupt the stack if GenericEvents with lengths larger than 32 bytes are sent through a the XTestFakeInput request. This issue can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for ssh X forwarding sessions. This issue does not affect systems where client and server use the same byte order.

A vulnerability was found in X.Org. The issue occurs due to the swap handler for the XTestFakeInput request of the XTest extension, possibly corrupting the stack if GenericEvents with lengths larger than 32 bytes are sent through the XTestFakeInput request. This flaw can lead to local privilege elevation on systems where the X server runs privileged and remote code execution for ssh X forwarding sessions. This issue does not affect systems where the client and server use the same byte order.

Отчет

Xorg server does not run with root privileges in Red Hat Enterprise Linux 8 and 9, therefore Red Hat Enterprise Linux 8 and 9 have been rated with a Moderate severity.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6tigervncOut of support scope
Red Hat Enterprise Linux 6xorg-x11-serverOut of support scope
Red Hat Enterprise Linux 7tigervncFixedRHSA-2023:004509.01.2023
Red Hat Enterprise Linux 7xorg-x11-serverFixedRHSA-2023:004609.01.2023
Red Hat Enterprise Linux 8xorg-x11-server-XwaylandFixedRHSA-2023:280516.05.2023
Red Hat Enterprise Linux 8xorg-x11-serverFixedRHSA-2023:280616.05.2023
Red Hat Enterprise Linux 8tigervncFixedRHSA-2023:283016.05.2023
Red Hat Enterprise Linux 9xorg-x11-serverFixedRHSA-2023:224809.05.2023
Red Hat Enterprise Linux 9xorg-x11-server-XwaylandFixedRHSA-2023:224909.05.2023
Red Hat Enterprise Linux 9tigervncFixedRHSA-2023:225709.05.2023

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-121
https://bugzilla.redhat.com/show_bug.cgi?id=2151755xorg-x11-server: XTestSwapFakeInput stack overflow

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 2 лет назад

A vulnerability was found in X.Org. This security flaw occurs becuase the swap handler for the XTestFakeInput request of the XTest extension may corrupt the stack if GenericEvents with lengths larger than 32 bytes are sent through a the XTestFakeInput request. This issue can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for ssh X forwarding sessions. This issue does not affect systems where client and server use the same byte order.

CVSS3: 8.8
nvd
больше 2 лет назад

A vulnerability was found in X.Org. This security flaw occurs becuase the swap handler for the XTestFakeInput request of the XTest extension may corrupt the stack if GenericEvents with lengths larger than 32 bytes are sent through a the XTestFakeInput request. This issue can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for ssh X forwarding sessions. This issue does not affect systems where client and server use the same byte order.

CVSS3: 8.8
debian
больше 2 лет назад

A vulnerability was found in X.Org. This security flaw occurs becuase ...

suse-cvrf
больше 2 лет назад

Security update for xorg-x11-server

suse-cvrf
больше 2 лет назад

Security update for xorg-x11-server

8.8 High

CVSS3