CVE-2023-5367High· 7.8▾ TwilightA out-of-bounds write flaw was found in the xorg-x11-server. This issue occurs due to an incorrect calculation of a buffer offset when copying data stored in the heap in the XIChangeDeviceProperty function in Xi/xiproperty.c and in RRCha…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 42.9 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 4.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.6%
A out-of-bounds write flaw was found in the xorg-x11-server. This issue occurs due to an incorrect calculation of a buffer offset when copying data stored in the heap in the XIChangeDeviceProperty function in Xi/xiproperty.c and in RRChangeOutputProperty function in randr/rrproperty.c, allowing for possible escalation of privileges or denial of service.
x_server < 21.1.9xwayland < 23.2.2enterprise_linux = 7.0enterprise_linux = 8.0enterprise_linux = 9.0enterprise_linux_desktop = 7.0enterprise_linux_for_ibm_z_systems = 7.0_s390xenterprise_linux_for_power_big_endian = 7.0_ppc64enterprise_linux_for_power_little_endian = 7.0_ppc64leenterprise_linux_for_scientific_computing = 7.0enterprise_linux_server = 7.0enterprise_linux_workstation = 7.0fedora = 37fedora = 38fedora = 39debian_linux = 11.0debian_linux = 12.0Upgrade past the affected range:
x_server 21.1.9xwayland 23.2.2Connected by shared product, vendor, weakness, or advisory.
CVE-2023-6478High· 7.6A flaw was found in xorg-server
CVE-2023-6377High· 7.8A flaw was found in xorg-server
CVE-2023-5574High· 7.0A use-after-free flaw was found in xorg-x11-server-Xvfb
CVE-2023-5380Medium· 4.7A use-after-free flaw was found in the xorg-x11-server
CVE-2026-50264High· 7.8An out-of-bounds write flaw was found in the X.Org X server and Xwayland in DRIGetBuffers/DRIGetBuffersWithFormat
CVE-2026-50263Medium· 5.5A use-after-free flaw was found in the X.Org X server and Xwayland in CreateSaverWindow()