QID 356979
Date Published: 2024-01-17
QID 356979: Amazon Linux Security Advisory for libX11 : AL2012-2023-463
Package updates are available for Amazon Linux that fix the following vulnerabilities:
CVE-2023-43787:
libX11: integer overflow in XCreateImage() leading to a heap overflow.
CVE-2023-43785:
libX11: out-of-bounds memory access in _XkbReadKeySyms()
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Administrators are advised to apply the appropriate software updates.
Vendor References
CVEs related to QID 356979
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| AL2012-2023-463 | Amazon Linux Bare Metal |
|