« List of all CVEs

CVE-2023-43787

Libx11: integer overflow in xcreateimage() leading to a heap overflow

Published: 10/10/2023 Last updated: 11/6/2025 Reserved: 9/22/2023

A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevated privileges.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Metrics

Version Score Severity Vector String
3.1 7.8 High CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Opam packages affected (2)

conf-libX11 raylib

Products affected (10)

Product Vendor Version
<= *
Red Hat Enterprise Linux 8 Red Hat < d83574666bac4b1462e90df393fbed6c5f57d1a3
Red Hat Enterprise Linux 9 Red Hat < e5ecdb01952f230921aa8163d8d7f4c97c925ed8
Red Hat Enterprise Linux 6 Red Hat < fe5b8ea5583b5c3f6f68e06acba50387edf3b5d5
Red Hat Enterprise Linux 7 Red Hat < a25ed5f21f94f9ae4bcc8dd747e978668890c921
< 084f797dbc7e52209a4ab6dbc7f0109268754eb9
Red Hat Enterprise Linux 8 Red Hat < ccd3394f9a7200d6b088553bf38e688620cd27af
Red Hat Enterprise Linux 9 Red Hat < 7f33b92e5b18e904a481e6e208486da43e4dc841
Red Hat Enterprise Linux 6 Red Hat 2.6.12
Red Hat Enterprise Linux 7 Red Hat < 2.6.12

References (24)