CVE Vulnerabilities

CVE-2023-43786

Loop with Unreachable Exit Condition ('Infinite Loop')

Published: Oct 10, 2023 | Modified: Sep 16, 2024
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
5.5 MODERATE
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Ubuntu
MEDIUM

A vulnerability was found in libX11 due to an infinite loop within the PutSubImage() function. This flaw allows a local user to consume all available system resources and cause a denial of service condition.

Weakness

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

Affected Software

Name Vendor Start Version End Version
Libx11 X.org * 1.8.7 (excluding)
Red Hat Enterprise Linux 8 RedHat libX11-0:1.6.8-8.el8 *
Red Hat Enterprise Linux 9 RedHat libX11-0:1.7.0-9.el9 *
Libx11 Ubuntu bionic *
Libx11 Ubuntu devel *
Libx11 Ubuntu esm-infra/bionic *
Libx11 Ubuntu esm-infra/xenial *
Libx11 Ubuntu focal *
Libx11 Ubuntu jammy *
Libx11 Ubuntu lunar *
Libx11 Ubuntu mantic *
Libx11 Ubuntu noble *
Libx11 Ubuntu oracular *
Libx11 Ubuntu trusty *
Libx11 Ubuntu trusty/esm *
Libx11 Ubuntu upstream *
Libx11 Ubuntu xenial *
Libxpm Ubuntu bionic *
Libxpm Ubuntu devel *
Libxpm Ubuntu esm-infra/bionic *
Libxpm Ubuntu esm-infra/xenial *
Libxpm Ubuntu focal *
Libxpm Ubuntu jammy *
Libxpm Ubuntu lunar *
Libxpm Ubuntu mantic *
Libxpm Ubuntu noble *
Libxpm Ubuntu oracular *
Libxpm Ubuntu trusty *
Libxpm Ubuntu trusty/esm *
Libxpm Ubuntu upstream *
Libxpm Ubuntu xenial *
Motif Ubuntu bionic *
Motif Ubuntu lunar *
Motif Ubuntu mantic *
Motif Ubuntu trusty *
Motif Ubuntu xenial *

References