#VU59045 Out-of-bounds write in X.org Server - CVE-2021-4008
Published: December 17, 2021 / Updated: December 21, 2021
X.org Server
X.org
Description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a boundary error in the SProcRenderCompositeGlyphs() function in the Render extension. A local user can send a specially crafted CompositeGlyphs request, trigger an out-of-bounds write and execute arbitrary code with elevated privileges.