USN-3453-1
Dashboard / Vulnerabilities / USN-3453-1
USN-3453-1
Summary: xorg-server, xorg-server-hwe-16.04, xorg-server-lts-xenial vulnerabilities
Details: Michal Srb discovered that the X.Org X server incorrectly handled shared memory segments. An attacker able to connect to an X server, either locally or remotely, could use this issue to crash the server, or possibly replace shared memory segments of other X clients in the same session. (CVE-2017-13721) Michal Srb discovered that the X.Org X server incorrectly handled XKB buffers. An attacker able to connect to an X server, either locally or remotely, could use this issue to crash the server, or possibly execute arbitrary code. (CVE-2017-13723)
References: https://ubuntu.com/security/notices/USN-3453-1, https://ubuntu.com/security/CVE-2017-13721, https://ubuntu.com/security/CVE-2017-13723
Affected packages
Package
Name: xorg-server
Purl: pkg:deb/ubuntu/xorg-server@2:1.15.1-0ubuntu2.10?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
