Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.2.2024.2962
Category:Huawei EulerOS Local Security Checks
Title:Huawei EulerOS: Security Advisory for xorg-x11-server (EulerOS-SA-2024-2962)
Summary:The remote host is missing an update for the Huawei EulerOS 'xorg-x11-server' package(s) announced via the EulerOS-SA-2024-2962 advisory.
Description:Summary:
The remote host is missing an update for the Huawei EulerOS 'xorg-x11-server' package(s) announced via the EulerOS-SA-2024-2962 advisory.

Vulnerability Insight:
A use-after-free flaw was found in xorg-x11-server-Xvfb. This issue occurs in Xvfb with a very specific and legacy configuration (a multi-screen setup with multiple protocol screens, also known as Zaphod mode). If the pointer is warped from a screen 1 to a screen 0, a use-after-free issue may be triggered during shutdown or reset of the Xvfb server, allowing for possible escalation of privileges or denial of service.(CVE-2023-5574)

Affected Software/OS:
'xorg-x11-server' package(s) on Huawei EulerOS V2.0SP12(x86_64).

Solution:
Please install the updated package(s).

CVSS Score:
6.0

CVSS Vector:
AV:L/AC:H/Au:S/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2023-5574
RHBZ#2244735
https://bugzilla.redhat.com/show_bug.cgi?id=2244735
RHSA-2024:2298
https://access.redhat.com/errata/RHSA-2024:2298
https://access.redhat.com/security/cve/CVE-2023-5574
https://lists.x.org/archives/xorg-announce/2023-October/003430.html
https://security.netapp.com/advisory/ntap-20231130-0004/
CopyrightCopyright (C) 2024 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.