5.5
CVSSv3

CVE-2023-43789

Published: 12/10/2023 Updated: 30/04/2024
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

A vulnerability was found in libXpm where a vulnerability exists due to a boundary condition, a local user can trigger an out-of-bounds read error and read contents of memory on the system.

Vulnerable Product Search on Vulmon Subscribe to Product

libxpm project libxpm

redhat enterprise linux 8.0

redhat enterprise linux 9.0

fedoraproject fedora 38

Vendor Advisories

Multiple security vulnerabilities were discovered in libxpm, the X11 pixmap library, which may result in denial of service or the execution of arbitrary code For the oldstable distribution (bullseye), these problems have been fixed in version 1:3512-11+deb11u1 For the stable distribution (bookworm), these problems have been fixed in version 1: ...
libX11: integer overflow in XCreateImage() leading to a heap overflow (CVE-2023-43787) libXpm: out of bounds read in XpmCreateXpmImageFromBuffer() NOTE: wwwopenwallcom/lists/oss-security/2023/10/03/1NOTE: Fixed by: gitlabfreedesktoporg/xorg/lib/libxpm/-/commit/2fa554b01ef6079a9b35df9332bdc4f139ed67e0 (CVE-2023-43788) libXpm: ou ...
A vulnerability was found in libX11 due to an infinite loop within the PutSubImage() function This flaw allows a local user to consume all available system resources and cause a denial of service condition (CVE-2023-43786) libX11: integer overflow in XCreateImage() leading to a heap overflow (CVE-2023-43787) libXpm: out of bounds read on XPM wit ...
Description<!----> This CVE is under investigation by Red Hat Product Security ...