#VU59046 Out-of-bounds write in X.org Server - CVE-2021-4009
Published: December 17, 2021 / Updated: December 21, 2021
X.org Server
X.org
Description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a boundary error in the ProcXFixesCreatePointerBarrier() function in the XFixes extension. A local user can send a specially crafted CreatePointerBarrier request, trigger an out-of-bounds write and execute arbitrary code with elevated privileges.