#VU84373 Integer overflow in X.org Server and Xwayland - CVE-2023-6478
Published: December 13, 2023 / Updated: January 5, 2024
X.org Server
Xwayland
X.org
Description
The vulnerability allows a local user to gain access to sensitive information.
The vulnerability exists due to integer overflow when handling RRChangeProviderProperty or RRChangeOutputProperty requests. A local user can send a specially crafted request to the server, trigger an integer overflow and gain access to sensitive information.