CVE-2023-5367
Summary
| CVE | CVE-2023-5367 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-10-25 20:15:00 UTC |
| Updated | 2024-01-31 13:15:00 UTC |
| Description | A out-of-bounds write flaw was found in the xorg-x11-server. This issue occurs due to an incorrect calculation of a buffer offset when copying data stored in the heap in the XIChangeDeviceProperty function in Xi/xiproperty.c and in RRChangeOutputProperty function in randr/rrproperty.c, allowing for possible escalation of privileges or denial of service. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 161051 Oracle Enterprise Linux Security Update for xorg-x11-server (ELSA-2023-6802)
- 161193 Oracle Enterprise Linux Security Update for tigervnc (ELSA-2023-7428)
- 161265 Oracle Enterprise Linux Security Update for tigervnc (ELSA-2024-0010)
- 199866 Ubuntu Security Notification for X.Org X Server Vulnerabilities (USN-6453-1)
- 199877 Ubuntu Security Notification for X.Org X Server Vulnerabilities (USN-6453-2)
- 242338 Red Hat Update for xorg-x11-server (RHSA-2023:6802)
- 242388 Red Hat Update for tigervnc (RHSA-2023:6808)
- 242486 Red Hat Update for tigervnc (RHSA-2023:7373)
- 242499 Red Hat Update for tigervnc (RHSA-2023:7428)
- 242503 Red Hat Update for tigervnc (RHSA-2023:7436)
- 242520 Red Hat Update for tigervnc (RHSA-2023:7526)
- 242566 Red Hat Update for tigervnc (RHSA-2023:7533)
- 242594 Red Hat Update for tigervnc (RHSA-2023:7405)
- 242607 Red Hat Update for tigervnc (RHSA-2023:7388)
- 242660 Red Hat Update for tigervnc (RHSA-2024:0010)
- 242880 Red Hat Update for tigervnc (RHSA-2024:0128)
- 257265 CentOS Security Update for xorg-x11-server
- 284686 Fedora Security Update for xorg (FEDORA-2023-1f4f1b8365)
- 284687 Fedora Security Update for xorg (FEDORA-2023-7a94186139)
- 284725 Fedora Security Update for xorg (FEDORA-2023-f111d2f306)
- 284726 Fedora Security Update for xorg (FEDORA-2023-18cb340b28)
- 284729 Fedora Security Update for tigervnc (FEDORA-2023-dbacf5d9f6)
- 284745 Fedora Security Update for tigervnc (FEDORA-2023-4708733ccc)
- 285157 Fedora Security Update for tigervnc (FEDORA-2023-4bb75fa8f2)
- 285171 Fedora Security Update for xorg (FEDORA-2023-2eb445d52b)
- 285174 Fedora Security Update for xorg (FEDORA-2023-b88929bc79)
- 296108 Oracle Solaris 11.4 Support Repository Update (SRU) 66.164.1 Missing (CPUJAN2024)
- 356618 Amazon Linux Security Advisory for xorg-x11-server : ALAS2023-2023-404
- 356738 Amazon Linux Security Advisory for xorg-x11-server : ALAS2-2023-2335
- 356746 Amazon Linux Security Advisory for xorg-x11-server : ALAS-2023-1884
- 356991 Amazon Linux Security Advisory for xorg-x11-server : AL2012-2023-475
- 379034 Alibaba Cloud Linux Security Update for xorg-x11-server (ALINUX2-SA-2023:0046)
- 379276 Alibaba Cloud Linux Security Update for tigervnc (ALINUX2-SA-2023:0050)
- 379625 Alibaba Cloud Linux Security Update for tigervnc (ALINUX3-SA-2024:0028)
- 503445 Alpine Linux Security Update for xorg-server
- 503551 Alpine Linux Security Update for xwayland
- 506278 Alpine Linux Security Update for xorg-server
- 506281 Alpine Linux Security Update for xwayland
- 6000255 Debian Security Update for xorg-server (DLA 3631-1)
- 6000298 Debian Security Update for xorg-server (DSA 5534-1)
- 673442 EulerOS Security Update for xorg-x11-server (EulerOS-SA-2024-1307)
- 673495 EulerOS Security Update for xorg-x11-server (EulerOS-SA-2024-1169)
- 673515 EulerOS Security Update for xorg-x11-server (EulerOS-SA-2024-1131)
- 673733 EulerOS Security Update for xorg-x11-server (EulerOS-SA-2024-1115)
- 691339 Free Berkeley Software Distribution (FreeBSD) Security Update for xorg (9e2fdfc7-e237-4393-9fa5-2d50908c66b3)
- 710847 Gentoo Linux X.Org X Server, XWayland Multiple Vulnerabilities (GLSA 202401-30)
- 755188 SUSE Enterprise Linux Security Update for xorg-x11-server (SUSE-SU-2023:4272-1)
- 755191 SUSE Enterprise Linux Security Update for xorg-x11-server (SUSE-SU-2023:4269-1)
- 755198 SUSE Enterprise Linux Security Update for xwayland (SUSE-SU-2023:4306-1)
- 755203 SUSE Enterprise Linux Security Update for xwayland (SUSE-SU-2023:4293-1)
- 755204 SUSE Enterprise Linux Security Update for xorg-x11-server (SUSE-SU-2023:4292-1)
- 755217 SUSE Enterprise Linux Security Update for xorg-x11-server (SUSE-SU-2023:4338-1)
- 941513 AlmaLinux Security Update for tigervnc (ALSA-2024:0010)