USN-6453-1: X.Org X Server vulnerabilities
Jan-Niklas Sohn discovered that the X.Org X Server incorrectly handled prepending values to certain properties. An attacker could possibly use this issue to cause the X Server to crash, execute arbitrary code, or escalate privileges. (CVE-2023-5367) Sri discovered that the X.Org X Server incorrectly handled detroying windows in certain legacy multi-screen setups. An attacker could possibly use this issue to cause the X Server to crash, execute arbitrary code, or escalate privileges. (CVE-2023-5380)
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this advisory?
The vulnerability ID for this advisory is USN-6453-1.
What is the severity of USN-6453-1?
The severity of USN-6453-1 is not specified in the provided information.
How does the X.Org X Server vulnerabilities impact Ubuntu?
The X.Org X Server vulnerabilities could allow attackers to crash the X Server, execute arbitrary code, or escalate privileges on affected Ubuntu systems.
Which versions of Ubuntu are affected by this vulnerability?
The versions of Ubuntu affected by this vulnerability include 23.10, 23.04, 22.04, and 20.04.
How can I fix the X.Org X Server vulnerabilities?
To fix the X.Org X Server vulnerabilities, update the xserver-xorg-core and xwayland packages to the specified remedy versions provided in the advisory.