ZDI-23-098: X.Org Server DeepCopyPointerClasses Use-After-Free Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of X.Org Server. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-098?
The severity of ZDI-23-098 is considered high as it allows local attackers to escalate privileges.
How do I fix ZDI-23-098?
To fix ZDI-23-098, ensure that you update X.Org Server to the latest available version that addresses this vulnerability.
Who is affected by ZDI-23-098?
ZDI-23-098 affects installations of X.Org Server that have not applied necessary security updates.
What type of attack vector is used in ZDI-23-098?
ZDI-23-098 requires an attacker to first execute low-privileged code locally on the target system to exploit the vulnerability.
What are the potential impacts of ZDI-23-098?
The potential impacts of ZDI-23-098 include unauthorized privilege escalation, allowing attackers to gain increased access to system resources.