UBUNTU-CVE-2024-0229
Dashboard / Vulnerabilities / UBUNTU-CVE-2024-0229
UBUNTU-CVE-2024-0229
Summary:
Details: An out-of-bounds memory access flaw was found in the X.Org server. This issue can be triggered when a device frozen by a sync grab is reattached to a different master device. This issue may lead to an application crash, local privilege escalation (if the server runs with extended privileges), or remote code execution in SSH X11 forwarding environments.
References: https://ubuntu.com/security/CVE-2024-0229, https://ubuntu.com/security/notices/USN-6587-1, https://ubuntu.com/security/notices/USN-6587-2, https://ubuntu.com/security/notices/USN-6587-5, https://www.cve.org/CVERecord?id=CVE-2024-0229
Affected packages
Package
Name: xorg-server
Purl: pkg:deb/ubuntu/xorg-server@2:1.15.1-0ubuntu2.11+esm9?arch=source&distro=trusty/esm
Affected ranges
Type: ECOSYSTEM
Events:
