Jan-Niklas Sohn discovered that the X.Org X Server incorrectly handled prepending values to certain properties. An attacker could possibly use this issue to cause the X Server to crash, execute arbitrary code, or escalate privileges. (CVE-2023-5367)
Sri discovered that the X.Org X Server incorrectly handled detroying windows in certain legacy multi-screen setups. An attacker could possibly use this issue to cause the X Server to crash, execute arbitrary code, or escalate privileges. (CVE-2023-5380)
{ "binaries": [ { "binary_name": "xdmx", "binary_version": "2:1.20.13-1ubuntu1~20.04.9" }, { "binary_name": "xdmx-tools", "binary_version": "2:1.20.13-1ubuntu1~20.04.9" }, { "binary_name": "xnest", "binary_version": "2:1.20.13-1ubuntu1~20.04.9" }, { "binary_name": "xorg-server-source", "binary_version": "2:1.20.13-1ubuntu1~20.04.9" }, { "binary_name": "xserver-common", "binary_version": "2:1.20.13-1ubuntu1~20.04.9" }, { "binary_name": "xserver-xephyr", "binary_version": "2:1.20.13-1ubuntu1~20.04.9" }, { "binary_name": "xserver-xorg-core", "binary_version": "2:1.20.13-1ubuntu1~20.04.9" }, { "binary_name": "xserver-xorg-dev", "binary_version": "2:1.20.13-1ubuntu1~20.04.9" }, { "binary_name": "xserver-xorg-legacy", "binary_version": "2:1.20.13-1ubuntu1~20.04.9" }, { "binary_name": "xvfb", "binary_version": "2:1.20.13-1ubuntu1~20.04.9" }, { "binary_name": "xwayland", "binary_version": "2:1.20.13-1ubuntu1~20.04.9" } ], "availability": "No subscription required" }
{ "binaries": [ { "binary_name": "xnest", "binary_version": "2:21.1.4-2ubuntu1.7~22.04.2" }, { "binary_name": "xorg-server-source", "binary_version": "2:21.1.4-2ubuntu1.7~22.04.2" }, { "binary_name": "xserver-common", "binary_version": "2:21.1.4-2ubuntu1.7~22.04.2" }, { "binary_name": "xserver-xephyr", "binary_version": "2:21.1.4-2ubuntu1.7~22.04.2" }, { "binary_name": "xserver-xorg-core", "binary_version": "2:21.1.4-2ubuntu1.7~22.04.2" }, { "binary_name": "xserver-xorg-dev", "binary_version": "2:21.1.4-2ubuntu1.7~22.04.2" }, { "binary_name": "xserver-xorg-legacy", "binary_version": "2:21.1.4-2ubuntu1.7~22.04.2" }, { "binary_name": "xvfb", "binary_version": "2:21.1.4-2ubuntu1.7~22.04.2" } ], "availability": "No subscription required" }