Логотип exploitDog
bind:"CVE-2024-21885" OR bind:"CVE-2023-6816" OR bind:"CVE-2024-21886" OR bind:"CVE-2024-0229"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2024-21885" OR bind:"CVE-2023-6816" OR bind:"CVE-2024-21886" OR bind:"CVE-2024-0229"

Количество 43

Количество 43

github логотип

GHSA-2x93-8973-5mgq

больше 1 года назад

A flaw was found in X.Org server. In the XISendDeviceHierarchyEvent function, it is possible to exceed the allocated array length when certain new device IDs are added to the xXIHierarchyInfo struct. This can trigger a heap buffer overflow condition, which may lead to an application crash or remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
EPSS: Низкий
fstec логотип

BDU:2024-00667

больше 1 года назад

Уязвимость функции XISendDeviceHierarchyEvent реализации протокола Wayland для X.Org XWayland, реализации сервера X Window System X.Org Server, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

CVSS3: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2023-6816

больше 1 года назад

A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQueryPointer reply contain a bit for each logical button currently down. Buttons can be arbitrarily mapped to any value up to 255, but the X.Org Server was only allocating space for the device's particular number of buttons, leading to a heap overflow if a bigger value was used.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2023-6816

больше 1 года назад

A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQueryPointer reply contain a bit for each logical button currently down. Buttons can be arbitrarily mapped to any value up to 255, but the X.Org Server was only allocating space for the device's particular number of buttons, leading to a heap overflow if a bigger value was used.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2023-6816

больше 1 года назад

A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQueryPointer reply contain a bit for each logical button currently down. Buttons can be arbitrarily mapped to any value up to 255, but the X.Org Server was only allocating space for the device's particular number of buttons, leading to a heap overflow if a bigger value was used.

CVSS3: 9.8
EPSS: Низкий
msrc логотип

CVE-2023-6816

больше 1 года назад

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2023-6816

больше 1 года назад

A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQuer ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-pcjv-393q-rqf2

больше 1 года назад

A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQueryPointer reply contain a bit for each logical button currently down. Buttons can be arbitrarily mapped to any value up to 255, but the X.Org Server was only allocating space for the device's particular number of buttons, leading to a heap overflow if a bigger value was used.

CVSS3: 7.8
EPSS: Низкий
fstec логотип

BDU:2024-00405

больше 1 года назад

Уязвимость функций DeviceFocusEvent и XIQueryPointer реализации сервера X Window System X.Org Server, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2024-21886

больше 1 года назад

A heap buffer overflow flaw was found in the DisableDevice function in the X.Org server. This issue may lead to an application crash or, in some circumstances, remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2024-21886

больше 1 года назад

A heap buffer overflow flaw was found in the DisableDevice function in the X.Org server. This issue may lead to an application crash or, in some circumstances, remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2024-21886

больше 1 года назад

A heap buffer overflow flaw was found in the DisableDevice function in the X.Org server. This issue may lead to an application crash or, in some circumstances, remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2024-21886

9 месяцев назад

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2024-21886

больше 1 года назад

A heap buffer overflow flaw was found in the DisableDevice function in ...

CVSS3: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2024-0229

больше 1 года назад

An out-of-bounds memory access flaw was found in the X.Org server. This issue can be triggered when a device frozen by a sync grab is reattached to a different master device. This issue may lead to an application crash, local privilege escalation (if the server runs with extended privileges), or remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2024-0229

больше 1 года назад

An out-of-bounds memory access flaw was found in the X.Org server. This issue can be triggered when a device frozen by a sync grab is reattached to a different master device. This issue may lead to an application crash, local privilege escalation (if the server runs with extended privileges), or remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2024-0229

больше 1 года назад

An out-of-bounds memory access flaw was found in the X.Org server. This issue can be triggered when a device frozen by a sync grab is reattached to a different master device. This issue may lead to an application crash, local privilege escalation (if the server runs with extended privileges), or remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2024-0229

9 месяцев назад

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2024-0229

больше 1 года назад

An out-of-bounds memory access flaw was found in the X.Org server. Thi ...

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-vx3h-cj8w-2h2c

больше 1 года назад

A heap buffer overflow flaw was found in the DisableDevice function in the X.Org server. This issue may lead to an application crash or, in some circumstances, remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2x93-8973-5mgq

A flaw was found in X.Org server. In the XISendDeviceHierarchyEvent function, it is possible to exceed the allocated array length when certain new device IDs are added to the xXIHierarchyInfo struct. This can trigger a heap buffer overflow condition, which may lead to an application crash or remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
fstec логотип
BDU:2024-00667

Уязвимость функции XISendDeviceHierarchyEvent реализации протокола Wayland для X.Org XWayland, реализации сервера X Window System X.Org Server, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

CVSS3: 7.8
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2023-6816

A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQueryPointer reply contain a bit for each logical button currently down. Buttons can be arbitrarily mapped to any value up to 255, but the X.Org Server was only allocating space for the device's particular number of buttons, leading to a heap overflow if a bigger value was used.

CVSS3: 9.8
2%
Низкий
больше 1 года назад
redhat логотип
CVE-2023-6816

A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQueryPointer reply contain a bit for each logical button currently down. Buttons can be arbitrarily mapped to any value up to 255, but the X.Org Server was only allocating space for the device's particular number of buttons, leading to a heap overflow if a bigger value was used.

CVSS3: 9.8
2%
Низкий
больше 1 года назад
nvd логотип
CVE-2023-6816

A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQueryPointer reply contain a bit for each logical button currently down. Buttons can be arbitrarily mapped to any value up to 255, but the X.Org Server was only allocating space for the device's particular number of buttons, leading to a heap overflow if a bigger value was used.

CVSS3: 9.8
2%
Низкий
больше 1 года назад
msrc логотип
CVSS3: 9.8
2%
Низкий
больше 1 года назад
debian логотип
CVE-2023-6816

A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQuer ...

CVSS3: 9.8
2%
Низкий
больше 1 года назад
github логотип
GHSA-pcjv-393q-rqf2

A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQueryPointer reply contain a bit for each logical button currently down. Buttons can be arbitrarily mapped to any value up to 255, but the X.Org Server was only allocating space for the device's particular number of buttons, leading to a heap overflow if a bigger value was used.

CVSS3: 7.8
2%
Низкий
больше 1 года назад
fstec логотип
BDU:2024-00405

Уязвимость функций DeviceFocusEvent и XIQueryPointer реализации сервера X Window System X.Org Server, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 7.8
2%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-21886

A heap buffer overflow flaw was found in the DisableDevice function in the X.Org server. This issue may lead to an application crash or, in some circumstances, remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
redhat логотип
CVE-2024-21886

A heap buffer overflow flaw was found in the DisableDevice function in the X.Org server. This issue may lead to an application crash or, in some circumstances, remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-21886

A heap buffer overflow flaw was found in the DisableDevice function in the X.Org server. This issue may lead to an application crash or, in some circumstances, remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
msrc логотип
CVSS3: 7.8
0%
Низкий
9 месяцев назад
debian логотип
CVE-2024-21886

A heap buffer overflow flaw was found in the DisableDevice function in ...

CVSS3: 7.8
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-0229

An out-of-bounds memory access flaw was found in the X.Org server. This issue can be triggered when a device frozen by a sync grab is reattached to a different master device. This issue may lead to an application crash, local privilege escalation (if the server runs with extended privileges), or remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
redhat логотип
CVE-2024-0229

An out-of-bounds memory access flaw was found in the X.Org server. This issue can be triggered when a device frozen by a sync grab is reattached to a different master device. This issue may lead to an application crash, local privilege escalation (if the server runs with extended privileges), or remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-0229

An out-of-bounds memory access flaw was found in the X.Org server. This issue can be triggered when a device frozen by a sync grab is reattached to a different master device. This issue may lead to an application crash, local privilege escalation (if the server runs with extended privileges), or remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
msrc логотип
CVSS3: 7.8
0%
Низкий
9 месяцев назад
debian логотип
CVE-2024-0229

An out-of-bounds memory access flaw was found in the X.Org server. Thi ...

CVSS3: 7.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-vx3h-cj8w-2h2c

A heap buffer overflow flaw was found in the DisableDevice function in the X.Org server. This issue may lead to an application crash or, in some circumstances, remote code execution in SSH X11 forwarding environments.

CVSS3: 7.8
0%
Низкий
больше 1 года назад

Уязвимостей на страницу