« List of all CVEs

CVE-2023-43787

Libx11: integer overflow in xcreateimage() leading to a heap overflow

Published: 10/10/2023 Last updated: 12/3/2024 Reserved: 9/22/2023

A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevated privileges.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Metrics

Version Score Severity Vector String
3.1 7.8 High CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Opam packages affected (2)

conf-libX11 raylib

Products affected (5)

Product Vendor Version
n/a
Red Hat Enterprise Linux 8 Red Hat firmware version 21.14.11 and earlier
Red Hat Enterprise Linux 9 Red Hat unspecified
Red Hat Enterprise Linux 6 Red Hat n/a
Red Hat Enterprise Linux 7 Red Hat < 14.1X53-D47

References (11)