USN-6453-2: X.Org X Server vulnerabilities
USN-6453-1 fixed several vulnerabilities in X.Org. This update provides the corresponding update for Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. Original advisory details: Jan-Niklas Sohn discovered that the X.Org X Server incorrectly handled prepending values to certain properties. An attacker could possibly use this issue to cause the X Server to crash, execute arbitrary code, or escalate privileges. (CVE-2023-5367) Sri discovered that the X.Org X Server incorrectly handled detroying windows in certain legacy multi-screen setups. An attacker could possibly use this issue to cause the X Server to crash, execute arbitrary code, or escalate privileges. (CVE-2023-5380)
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this advisory?
USN-6453-2
What software is affected by this vulnerability?
X.Org X Server, xserver-xorg-core, xwayland
Which versions of Ubuntu are affected?
Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, Ubuntu 18.04 LTS
What is the severity of the vulnerability?
The severity of the vulnerability is not mentioned in the advisory.
How do I fix the X.Org X Server vulnerabilities?
To fix the vulnerabilities, you need to update the affected packages to the specified versions mentioned in the advisory.