• 公告ID (KylinSec-SA-2024-1449)

摘要:

An out-of-bounds memory access flaw was found in the X.Org server. This issue can be triggered when a device frozen by a sync grab is reattached to a different master device. This issue may lead to an application crash, local privilege escalation (if the server runs with extended privileges), or remote code execution in SSH X11 forwarding environments.

安全等级: Low

公告ID: KylinSec-SA-2024-1449

发布日期: 2024年2月26日

关联CVE: CVE-2024-0229  

  • 详细介绍

1. 漏洞描述

   

An out-of-bounds memory access flaw was found in the X.Org server. This issue can be triggered when a device frozen by a sync grab is reattached to a different master device. This issue may lead to an application crash, local privilege escalation (if the server runs with extended privileges), or remote code execution in SSH X11 forwarding environments.

2. 影响范围

cve名称 产品 组件 是否受影响
CVE-2024-0229 KY3.4-4A tigervnc Unaffected
CVE-2024-0229 KY3.4-5 tigervnc Unaffected
CVE-2024-0229 KY3.5.1 tigervnc Unaffected
CVE-2024-0229 KY3.5.2 tigervnc Unaffected

3. 影响组件

    无

4. 修复版本

    无

5. 修复方法

   无

6. 下载链接

    无
上一篇:KylinSec-SA-2024-1448 下一篇:KylinSec-SA-2024-1450