USN-6555-1: X.Org X Server vulnerabilities
Jan-Niklas Sohn discovered that the X.Org X Server incorrectly handled XKB button actions. An attacker could possibly use this issue to cause the X Server to crash, execute arbitrary code, or escalate privileges. (CVE-2023-6377) Jan-Niklas Sohn discovered that the X.Org X Server incorrectly handled memory when processing the RRChangeOutputProperty and RRChangeProviderProperty APIs. An attacker could possibly use this issue to cause the X Server to crash, or obtain sensitive information. (CVE-2023-6478)
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-6555-1?
The severity of USN-6555-1 is significant due to the potential for crashes, arbitrary code execution, and privilege escalation.
How do I fix USN-6555-1?
To fix USN-6555-1, update the affected packages xserver-xorg-core and xwayland to their respective secure versions listed in the advisory.
Which Ubuntu versions are affected by USN-6555-1?
USN-6555-1 affects Ubuntu versions 20.04, 22.04, and 23.04.
What packages are impacted by USN-6555-1?
The impacted packages in USN-6555-1 include xserver-xorg-core and xwayland.
Who discovered the vulnerability addressed by USN-6555-1?
The vulnerability addressed by USN-6555-1 was discovered by Jan-Niklas Sohn.