Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-43787

Опубликовано: 04 окт. 2023
Источник: redhat
CVSS3: 7.8
EPSS Низкий

Описание

A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevated privileges.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libX11Out of support scope
Red Hat Enterprise Linux 7libX11Out of support scope
Red Hat Enterprise Linux 8libX11FixedRHSA-2024:297322.05.2024
Red Hat Enterprise Linux 9libX11FixedRHSA-2024:214530.04.2024

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=2242254libX11: integer overflow in XCreateImage() leading to a heap overflow

EPSS

Процентиль: 13%
0.00042
Низкий

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 2 лет назад

A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevated privileges.

CVSS3: 7.8
nvd
больше 2 лет назад

A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevated privileges.

CVSS3: 7.8
msrc
больше 2 лет назад

Libx11: integer overflow in xcreateimage() leading to a heap overflow

CVSS3: 7.8
debian
больше 2 лет назад

A vulnerability was found in libX11 due to an integer overflow within ...

CVSS3: 7.8
github
больше 2 лет назад

A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevated privileges.

EPSS

Процентиль: 13%
0.00042
Низкий

7.8 High

CVSS3