Arbitrary Code Execution Vulnerability in libX11's XCreateImage() Function
CVE-2023-43787

7.8HIGH

Key Information:

Vendor
CVE Published:
10 October 2023

Badges

๐Ÿ‘พ Exploit Exists๐Ÿ“ฐ News Worthy

What is CVE-2023-43787?

A vulnerability in libX11 has been identified, stemming from an integer overflow issue within the XCreateImage() function. This flaw potentially allows local users to exploit the overflow and execute arbitrary code, which could lead to elevated privileges on the affected systems. Organizations using vulnerable versions of libX11 should take immediate steps to apply available patches and secure their environments against potential exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

News Articles

CVE-2023-43786 & CVE-2023-43787 Vulns in libX11: All You Need To Know

Learn all about the 35-year-old vulnerabilities found by our Security Team in libX11, causing a denial-of-service and remote code execution.

CVE-2023-43786 & CVE-2023-43787 Vulns in libX11: All You Need To Know

Learn all about the 35-year-old vulnerabilities found by our Security Team in libX11, causing a denial-of-service and remote code execution.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • ๐Ÿ‘พ

    Exploit known to exist

  • ๐Ÿ“ฐ

    First article discovered by JFrog

  • Vulnerability published

  • Vulnerability Reserved

.