Untriaged
Xorg-x11-server: out-of-bounds write in xichangedeviceproperty/rrchangeoutputproperty
A out-of-bounds write flaw was found in the xorg-x11-server. This issue occurs due to an incorrect calculation of a buffer offset when copying data stored in the heap in the XIChangeDeviceProperty function in Xi/xiproperty.c and in RRChangeOutputProperty function in randr/rrproperty.c, allowing for possible escalation of privileges or denial of service.
Affected products
tigervnc
- *
xwayland
- ==23.2.2
xorg-server
- ==21.1.9
xorg-x11-server
- *
xorg-x11-server-Xwayland
- *
Matching in nixpkgs
pkgs.tigervnc
Fork of tightVNC, made in cooperation with VirtualGL
-
nixos-unstable -
- nixpkgs-unstable 1.15.0