Vulnerabilities > CVE-2023-24039 - Out-of-bounds Write vulnerability in Opengroup Common Desktop Environment 1.6

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
opengroup
CWE-787

Summary

A stack-based buffer overflow in ParseColors in libXm in Common Desktop Environment 1.6 can be exploited by local low-privileged users via the dtprintinfo setuid binary to escalate their privileges to root on Solaris 10 systems. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

Vulnerable Configurations

Part Description Count
Application
Opengroup
1

Common Weakness Enumeration (CWE)