CVE-2023-43786

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Oct 10, 2023
Updated: May 22, 2024
CWE ID 400
CWE ID 835

Summary

CVE-2023-43786 is a newly discovered vulnerability affecting the libX11 library. This issue stems from an infinite loop within the PutSubImage() function, leading to excessive resource consumption. Consequently, a local user can exploit this flaw, resulting in a denial of service condition. The infinite loop causes the system to allocate and exhaust all available resources, leaving the system unable to respond to legitimate requests, making it a significant security concern.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • X.org Libx11
  • Libx11
  • Red Hat Enterprise Linux
  • Fedora Operating System

Affected Vendors

  • Red Hat
  • Fedora Project
  • X.Org Foundation
  • X.Org