CVE-2018-14598

Description

An issue was discovered in XListExtensions in ListExt.c in libX11 through 1.6.5. A malicious server can send a reply in which the first string overflows, causing a variable to be set to NULL that will be freed later on, leading to DoS (segmentation fault).

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
3.14

Associated Vulnerability

VulnerabilityOS Platform
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libX11-6-1.6.2-12.5.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libX11-6-32bit-1.6.2-12.5.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libX11-6-debuginfo-1.6.2-12.5.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libX11-6-debuginfo-32bit-1.6.2-12.5.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libX11-data-1.6.2-12.5.1.noarch.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libX11-debugsource-1.6.2-12.5.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libX11-xcb1-1.6.2-12.5.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libX11-xcb1-32bit-1.6.2-12.5.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libX11-xcb1-debuginfo-1.6.2-12.5.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libX11-xcb1-debuginfo-32bit-1.6.2-12.5.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-debugsource-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-dri2-0-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-dri2-0-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-dri2-0-debuginfo-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-dri2-0-debuginfo-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-dri3-0-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-dri3-0-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-dri3-0-debuginfo-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-dri3-0-debuginfo-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-glx0-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-glx0-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-glx0-debuginfo-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-glx0-debuginfo-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-present0-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-present0-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-present0-debuginfo-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-present0-debuginfo-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-randr0-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-randr0-debuginfo-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-render0-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-render0-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-render0-debuginfo-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-render0-debuginfo-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-shape0-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-shape0-debuginfo-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-shm0-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-shm0-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-shm0-debuginfo-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-shm0-debuginfo-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-sync1-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-sync1-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-sync1-debuginfo-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-sync1-debuginfo-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-xf86dri0-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-xf86dri0-debuginfo-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-xfixes0-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-xfixes0-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-xfixes0-debuginfo-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-xfixes0-debuginfo-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-xinerama0-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-xinerama0-debuginfo-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-xkb1-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-xkb1-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-xkb1-debuginfo-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-xkb1-debuginfo-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-xv0-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb-xv0-debuginfo-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb1-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb1-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb1-debuginfo-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:3102-1(SUSE Linux Enterprise Desktop 12-SP3 ) libxcb1-debuginfo-32bit-1.10-4.3.1.x86_64.rpmLinux
SUSE-SU-2018:2934-1(SUSE Linux Enterprise Server 11-SP4 ) xorg-x11-libX11-7.4-5.11.72.9.1.x86_64.rpmLinux
SUSE-SU-2018:2934-1(SUSE Linux Enterprise Server 11-SP4 ) xorg-x11-libX11-32bit-7.4-5.11.72.9.1.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update gdm-3.28.2-16.el7.i686.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update gdm-3.28.2-16.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update gdm-devel-3.28.2-16.el7.i686.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update gdm-devel-3.28.2-16.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update gdm-pam-extensions-devel-3.28.2-16.el7.i686.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update gdm-pam-extensions-devel-3.28.2-16.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update libX11-1.6.7-2.el7.i686.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update libX11-1.6.7-2.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update libX11-common-1.6.7-2.el7.noarch.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update libX11-devel-1.6.7-2.el7.i686.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update libX11-devel-1.6.7-2.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update libxkbcommon-0.7.1-3.el7.i686.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update libxkbcommon-0.7.1-3.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update libxkbcommon-devel-0.7.1-3.el7.i686.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update libxkbcommon-devel-0.7.1-3.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update libxkbcommon-x11-0.7.1-3.el7.i686.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update libxkbcommon-x11-0.7.1-3.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update libxkbcommon-x11-devel-0.7.1-3.el7.i686.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update libxkbcommon-x11-devel-0.7.1-3.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update mesa-libGLw-8.0.0-5.el7.i686.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update mesa-libGLw-8.0.0-5.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update mesa-libGLw-devel-8.0.0-5.el7.i686.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update mesa-libGLw-devel-8.0.0-5.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update xorg-x11-drv-ati-19.0.1-2.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update xorg-x11-drv-vesa-2.4.0-3.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update xorg-x11-drv-wacom-0.36.1-3.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update xorg-x11-drv-wacom-devel-0.36.1-3.el7.i686.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update xorg-x11-drv-wacom-devel-0.36.1-3.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update xorg-x11-server-Xdmx-1.20.4-7.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update xorg-x11-server-Xephyr-1.20.4-7.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update xorg-x11-server-Xnest-1.20.4-7.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update xorg-x11-server-Xorg-1.20.4-7.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update xorg-x11-server-Xvfb-1.20.4-7.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update xorg-x11-server-Xwayland-1.20.4-7.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update xorg-x11-server-common-1.20.4-7.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update xorg-x11-server-devel-1.20.4-7.el7.i686.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update xorg-x11-server-devel-1.20.4-7.el7.x86_64.rpmLinux
(RHSA-2019:2079) Xorg security and bug fix update xorg-x11-server-source-1.20.4-7.el7.noarch.rpmLinux
(CESA-2019:2079) Xorg security and bug fix update xorg-x11-drv-vesa-2.4.0-3.el7.x86_64.rpmLinux
(CESA-2019:2079) Xorg security and bug fix update xorg-x11-drv-wacom-0.36.1-3.el7.x86_64.rpmLinux
(CESA-2019:2079) Xorg security and bug fix update xorg-x11-drv-wacom-devel-0.36.1-3.el7.i686.rpmLinux
(CESA-2019:2079) Xorg security and bug fix update xorg-x11-drv-wacom-devel-0.36.1-3.el7.x86_64.rpmLinux
(CESA-2019:2079) Xorg security and bug fix update gdm-pam-extensions-devel-3.28.2-16.el7.i686.rpmLinux
(CESA-2019:2079) Xorg security and bug fix update gdm-pam-extensions-devel-3.28.2-16.el7.x86_64.rpmLinux
(RHSA-2019:2079)Moderate: security and bug fix update gdm-debuginfo-3.28.2-16.el7.i686.rpmLinux
(RHSA-2019:2079)Moderate: security and bug fix update gdm-debuginfo-3.28.2-16.el7.x86_64.rpmLinux
(RHSA-2019:2079)Moderate: security and bug fix update libX11-debuginfo-1.6.7-2.el7.i686.rpmLinux
(RHSA-2019:2079)Moderate: security and bug fix update libX11-debuginfo-1.6.7-2.el7.x86_64.rpmLinux
(RHSA-2019:2079)Moderate: security and bug fix update libxkbcommon-debuginfo-0.7.1-3.el7.i686.rpmLinux
(RHSA-2019:2079)Moderate: security and bug fix update libxkbcommon-debuginfo-0.7.1-3.el7.x86_64.rpmLinux
(RHSA-2019:2079)Moderate: security and bug fix update mesa-libGLw-debuginfo-8.0.0-5.el7.i686.rpmLinux
(RHSA-2019:2079)Moderate: security and bug fix update mesa-libGLw-debuginfo-8.0.0-5.el7.x86_64.rpmLinux
(RHSA-2019:2079)Moderate: security and bug fix update xorg-x11-drv-ati-debuginfo-19.0.1-2.el7.x86_64.rpmLinux
(RHSA-2019:2079)Moderate: security and bug fix update xorg-x11-drv-vesa-debuginfo-2.4.0-3.el7.x86_64.rpmLinux
(RHSA-2019:2079)Moderate: security and bug fix update xorg-x11-drv-wacom-debuginfo-0.36.1-3.el7.i686.rpmLinux
(RHSA-2019:2079)Moderate: security and bug fix update xorg-x11-drv-wacom-debuginfo-0.36.1-3.el7.x86_64.rpmLinux
(RHSA-2019:2079)Moderate: security and bug fix update xorg-x11-server-debuginfo-1.20.4-7.el7.i686.rpmLinux
(RHSA-2019:2079)Moderate: security and bug fix update xorg-x11-server-debuginfo-1.20.4-7.el7.x86_64.rpmLinux
Gdm update (ELSA-2019-2079) gdm-3.28.2-16.el7.i686.rpmLinux
Gdm update (ELSA-2019-2079) gdm-3.28.2-16.el7.x86_64.rpmLinux
LibX11 update (ELSA-2019-2079) libX11-1.6.7-2.el7.i686.rpmLinux
LibX11 update (ELSA-2019-2079) libX11-1.6.7-2.el7.x86_64.rpmLinux
LibX11-common update (ELSA-2019-2079) libX11-common-1.6.7-2.el7.noarch.rpmLinux
LibX11-devel update (ELSA-2019-2079) libX11-devel-1.6.7-2.el7.i686.rpmLinux
LibX11-devel update (ELSA-2019-2079) libX11-devel-1.6.7-2.el7.x86_64.rpmLinux
Libxkbcommon update (ELSA-2019-2079) libxkbcommon-0.7.1-3.el7.i686.rpmLinux
Libxkbcommon update (ELSA-2019-2079) libxkbcommon-0.7.1-3.el7.x86_64.rpmLinux
Libxkbcommon-devel update (ELSA-2019-2079) libxkbcommon-devel-0.7.1-3.el7.i686.rpmLinux
Libxkbcommon-devel update (ELSA-2019-2079) libxkbcommon-devel-0.7.1-3.el7.x86_64.rpmLinux
Libxkbcommon-x11 update (ELSA-2019-2079) libxkbcommon-x11-0.7.1-3.el7.i686.rpmLinux
Libxkbcommon-x11 update (ELSA-2019-2079) libxkbcommon-x11-0.7.1-3.el7.x86_64.rpmLinux
Mesa-libGLw update (ELSA-2019-2079) mesa-libGLw-8.0.0-5.el7.i686.rpmLinux
Mesa-libGLw update (ELSA-2019-2079) mesa-libGLw-8.0.0-5.el7.x86_64.rpmLinux
Mesa-libGLw-devel update (ELSA-2019-2079) mesa-libGLw-devel-8.0.0-5.el7.i686.rpmLinux
Mesa-libGLw-devel update (ELSA-2019-2079) mesa-libGLw-devel-8.0.0-5.el7.x86_64.rpmLinux
Xorg-x11-drv-ati update (ELSA-2019-2079) xorg-x11-drv-ati-19.0.1-2.el7.x86_64.rpmLinux
Xorg-x11-drv-vesa update (ELSA-2019-2079) xorg-x11-drv-vesa-2.4.0-3.el7.x86_64.rpmLinux
Xorg-x11-drv-wacom update (ELSA-2019-2079) xorg-x11-drv-wacom-0.36.1-3.el7.x86_64.rpmLinux
Xorg-x11-server-Xephyr update (ELSA-2019-2079) xorg-x11-server-Xephyr-1.20.4-7.el7.x86_64.rpmLinux
Xorg-x11-server-Xorg update (ELSA-2019-2079) xorg-x11-server-Xorg-1.20.4-7.el7.x86_64.rpmLinux
Xorg-x11-server-common update (ELSA-2019-2079) xorg-x11-server-common-1.20.4-7.el7.x86_64.rpmLinux
Improper Input Validation Vulnerability (CVE-2018-14598)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234