Vulnerabilities > Opengroup > Common Desktop Environment > 1.6

DATE CVE VULNERABILITY TITLE RISK
2023-01-21 CVE-2023-24039 Out-of-bounds Write vulnerability in Opengroup Common Desktop Environment 1.6
A stack-based buffer overflow in ParseColors in libXm in Common Desktop Environment 1.6 can be exploited by local low-privileged users via the dtprintinfo setuid binary to escalate their privileges to root on Solaris 10 systems.
local
low complexity
opengroup CWE-787
7.8
2023-01-21 CVE-2023-24040 Injection vulnerability in Opengroup Common Desktop Environment 1.6
dtprintinfo in Common Desktop Environment 1.6 has a bug in the parser of lpstat (an invoked external command) during listing of the names of available printers.
local
low complexity
opengroup CWE-74
7.1