A use-after-free flaw was found in the X.Org X server and Xwayland in CreateSaverWindow(). A client can trigger a use-after-free read after changing window attributes and forcing the screen saver, leading to information disclosure.
An out-of-bounds read flaw was found in the X.Org X server and Xwayland in __glXDisp_ChangeDrawableAttributes(). A wrong size validation check can read a client-controlled number of bytes, exceeding the request buffer, leading to information disclosure. A write path also exists but requires byte-swapped clients which is disabled by default.
A weakness has been identified in Ehco1996 django-sspanel up to 2023.12.26. This affects the function TicketDetailView of the file apps/sspanel/views.py of the component Support Ticket Handler. Executing a manipulation can lead to authorization bypass. The attack can be executed remotely. The vendor was contacted early about this disclosure but did not respond in any way. This vulnerability only affects products that are no longer supported by the maintainer.
| Version | Type | Source | Base | Exp | Imp |
|---|---|---|---|---|---|
| 2.0 | Primary | cve.org | 6.5 | — | — |
| 2.0 | Secondary | NVD | 6.5 | 8.0 | 6.4 |
| 3.0 | Primary | cve.org | 6.3 | — | — |
| 3.1 | Primary | cve.org | 6.3 | — | — |
| 3.1 | Primary | NVD | 6.3 | 2.8 | 3.4 |
| 4.0 | Primary | cve.org | 5.3 | — | — |
| 4.0 | Secondary | ENISA EUVD | 5.3 | — | — |
| 4.0 | Secondary | NVD | 5.3 | — | — |