Back to search
CVE-2022-46344
Published: Dec 14, 2022
Modified: Feb 13, 2025
PUBLISHED
Description
A vulnerability was found in X.Org. This security flaw occurs because the handler for the XIChangeProperty request has a length-validation issues, resulting in out-of-bounds memory reads and potential information disclosure. This issue can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for ssh X forwarding sessions.
| Vendor | Product | Versions |
|---|---|---|
n/a | xorg-x11-server | affected xorg-x11-server-1.20.4 |
References
FEDORA-2022-c3a65f7c65
vendor-advisory
FEDORA-2022-721a78b7e5
vendor-advisory
DSA-5304
vendor-advisory
FEDORA-2022-dd3eb7e0a8
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now