SUSE-SU-2023:4338-1
Dashboard / Vulnerabilities / SUSE-SU-2023:4338-1
SUSE-SU-2023:4338-1
Summary: Security update for xorg-x11-server
Details: This update for xorg-x11-server fixes the following issues: - CVE-2023-5574: Fixed a privilege escalation issue that could be triggered via the Damage extension protocol (bsc#1216261). - CVE-2023-5380: Fixed a memory safety issue that could be triggered when using multiple protocol screens (bsc#1216133). - CVE-2023-5367: Fixed a memory safety issue in both the XI2 and RandR protocols (bsc#1216135).
References: https://www.suse.com/support/update/announcement/2023/suse-su-20234338-1/, https://bugzilla.suse.com/1216133, https://bugzilla.suse.com/1216135, https://bugzilla.suse.com/1216261, https://www.suse.com/security/cve/CVE-2023-5367, https://www.suse.com/security/cve/CVE-2023-5380, https://www.suse.com/security/cve/CVE-2023-5574
Affected packages
Package
Name: xorg-x11-server
Purl: pkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP2-LTSS
Affected ranges
Type: ECOSYSTEM
Events:
