CVE-2023-45920: Null Pointer Dereference
Xfig v3.2.8 was discovered to contain a NULL pointer dereference when calling XGetWMHints(). NOTE: this is disputed because it is not expected that an X application should continue to run when there is arbitrary anomalous behavior from the X server or window manager.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-45920?
CVE-2023-45920 is classified as a minor severity vulnerability due to the nature of the NULL pointer dereference issue.
How do I fix CVE-2023-45920?
To mitigate CVE-2023-45920, it is recommended to update to the latest version of Xfig where the vulnerability is addressed.
What software is affected by CVE-2023-45920?
CVE-2023-45920 affects Xfig version 3.2.8.
What are the potential impacts of CVE-2023-45920?
The potential impact of CVE-2023-45920 includes unexpected application crashes due to the NULL pointer dereference.
Is CVE-2023-45920 expected behavior in X applications?
CVE-2023-45920 is disputed in its classification since it is not expected for X applications to continue to run under anomalous behavior.