Back

HIGH

xorg-x11-server: DeepCopyPointerClasses use-after-free leads to privilege elevation

Published Mar 27, 2023

Description

A vulnerability was found in X.Org. This issue occurs due to a dangling pointer in DeepCopyPointerClasses that can be exploited by ProcXkbSetDeviceInfo() and ProcXkbGetDeviceInfo() to read and write into freed memory. This can lead to local privilege elevation on systems where the X server runs privileged and remote code execution for ssh X forwarding sessions.

Affected products

Remediation

Red Hat statement

Xorg server does not run with root privileges in Red Hat Enterprise Linux 8 and 9, therefore Red Hat Enterprise Linux 8 and 9 have been rated with Moderate severity.

Metrics

Weaknesses (1)

References (8)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Mar 27, 2023
Updated Feb 24, 2025
Reserved Jan 25, 2023
CISA Vulnrichment
Updated Feb 24, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Important
Public date Feb 7, 2023