First published: Thu Jan 04 2024(Updated: )
This vulnerability allows local attackers to disclose sensitive information on affected installations of X.Org Server. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 5.5. The following CVEs are assigned: CVE-2023-6478.
Affected Software | Affected Version | How to fix |
---|---|---|
X.Org Server |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is ZDI-24-009.
ZDI-24-009 is a local information disclosure vulnerability in X.Org Server.
An attacker must obtain the ability to execute low-privileged code on the target system to exploit ZDI-24-009.
Exploiting ZDI-24-009 can lead to the disclosure of sensitive information from affected installations of X.Org Server.
To mitigate the risks of ZDI-24-009, ensure that the X.Org Server is updated to the latest version with security patches applied.