PT-2024-1261 · X.Org+11 · X.Org Server+11

Robb Gatica

·

Published

2024-01-16

·

Updated

2025-08-04

·

CVE-2024-21885

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Vulnerability Report

Name of the Vulnerable Software and Affected Versions
  • X.Org Server versions prior to 1.20.14-alt11
  • X.Org Server versions prior to 2:1.20.11-1+deb11u11 (Debian bullseye)
  • X.Org Server versions prior to 2:21.1.7-3+deb12u5 (Debian bookworm)
  • X.Org xwayland versions prior to 23.1.1-alt4
  • X.Org x11-server versions prior to 21.1.11-1.1 (openSUSE Tumbleweed)
Description
A heap-based buffer overflow vulnerability exists in the XISendDeviceHierarchyEvent function of the X.Org server. This vulnerability can be triggered when processing new device IDs, potentially leading to a crash or remote code execution, particularly in SSH X11 forwarding environments.
Recommendations
  • Upgrade X.Org Server to version 1.20.14-alt11 or later.
  • For Debian bullseye, upgrade X.Org Server to version 2:1.20.11-1+deb11u11 or later.
  • For Debian bookworm, upgrade X.Org Server to version 2:21.1.7-3+deb12u5 or later.
  • Upgrade X.Org xwayland to version 23.1.1-alt4 or later.
  • For openSUSE Tumbleweed, upgrade X.Org x11-server to version 21.1.11-1.1 or later.

Fix

RCE

Heap Based Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2024:0557
ALSA-2024:0607
ALSA-2024:2169
ALSA-2024:2170
ALSA-2024:2995
ALSA-2024:2996
ALT-PU-2024-1181
ALT-PU-2024-1182
ALT-PU-2024-1183
ALT-PU-2024-3261
ALT-PU-2024-4743
ALT-PU-2024-4745
AZL-35405
AZL-44142
BDU:2024-00667
CESA-2024_0320
CESA-2024_0607
CESA-2024_0629
CESA-2024_2995
CESA-2024_2996
CVE-2024-21885
DLA-3721-1
DSA-5603-1
INFSA-2024_2169
INFSA-2024_2170
INFSA-2024_2995
INFSA-2024_2996
MGASA-2024-0022
OESA-2024-1102
OPENSUSE-SU-2024:13597-1
OPENSUSE-SU-2024:13598-1
RHSA-2024:0320
RHSA-2024:0557
RHSA-2024:0558
RHSA-2024:0597
RHSA-2024:0607
RHSA-2024:0614
RHSA-2024:0617
RHSA-2024:0621
RHSA-2024:0626
RHSA-2024:0629
RHSA-2024:2169
RHSA-2024:2170
RHSA-2024:2995
RHSA-2024:2996
RHSA-2024_0320
RHSA-2024_0557
RHSA-2024_0607
RHSA-2024_0629
RHSA-2024_2169
RHSA-2024_2170
RHSA-2024_2995
RHSA-2024_2996
RHSA-2025:12751
RLSA-2024:0607
ROSA-SA-2024-2351
ROSA-SA-2024-2352
ROSA-SA-2025-2575
ROSA-SA-2025-2576
SUSE-SU-2024:0109-1
SUSE-SU-2024:0111-1
SUSE-SU-2024:0114-1
SUSE-SU-2024:0116-1
SUSE-SU-2024:0121-1
SUSE-SU-2024:0165-1
USN-6587-1
USN-6587-2
USN-6587-3
USN-6587-4
USN-6587-5
ZDI-24-120

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Debian
Linuxmint
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu
X.Org Server