Remote command execution In xorg-server
Description
A use-after-free flaw was found in the xorg-x11-server. An X server crash may occur in a very specific and legacy configuration (a multi-screen setup with multiple protocol screens, also known as Zaphod mode) if the pointer is warped from within a window on one screen to the root window of the other screen and if the original window is destroyed followed by another window being destroyed.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
debian 11 | 2:1.20.11-1+deb11u8 | ||
debian 12 | 2:21.1.7-3+deb12u2 | ||
debian 13 | 2:21.1.9-1 | ||
debian 14 | 2:21.1.9-1 | ||
rpm rhel9 | 0:1.13.1-8.el9 | ||
rpm rhel7 | 0:1.8.0-26.el7_9 | ||
rpm rhel6 | - | - | |
rpm rhel8 | 0:1.13.1-8.el8 | ||
rpm rhel6 | - | - | |
rpm rhel7 | - | - |
1-10 of 12
10
Aliases
1. 2. 3. 4. 5.