Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2023-5367

23
FAUCET Score

CVE-2023-5367 is an out-of-bounds write vulnerability affecting xorg-x11-server in products like Debian, Fedora, Red Hat, and X.Org. This flaw stems from incorrect buffer offset calculations in the XIChangeDeviceProperty and RRChangeOutputProperty functions. With a CVSS score of 7.8 (HIGH), it presents a local attack vector with low complexity, potentially leading to privilege escalation or denial of service. There is currently no public exploit code available (Metasploit, Nuclei, ExploitDB), and it is not listed in CISA's KEV catalog. Community discussion is minimal, with only one Reddit mention regarding Ubuntu updates.

Impacted Technologies

VendorProductVersion(s)CPE
< 21.1.9CPE matchmatch criteria
cpe:2.3:a:x.org:x_server:*:*:*:*:*:*:*:*
< 23.2.2CPE matchmatch criteria
cpe:2.3:a:x.org:xwayland:*:*:*:*:*:*:*:*
7.0CPE matchmatch criteria
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
8.0CPE matchmatch criteria
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
9.0CPE matchmatch criteria
cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.62%
Probability of exploitation in next 30 days
EPSS Percentile
46.1%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0062 is in the 84th percentile among its peer group of 17,070 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (23)

denopatch availablevia llm_extracted
View patch
keraspatch availablevia llm_extracted
View patch
microsoftpatch availablevia msrc
Product: cbl2 xorg-x11-server 1.20.10-10 on CBL Mariner 2.0Fixed in: 1.20.10-10
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: tigervnc-0:1.13.1-2.el8_9.1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: xorg-x11-server-0:1.20.11-22.el8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: xorg-x11-server-Xwayland-0:21.1.3-15.el8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.1 Update Services for SAP SolutionsFixed in: tigervnc-0:1.9.0-16.el8_1.4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.2 Advanced Update SupportFixed in: tigervnc-0:1.9.0-15.el8_2.4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.2 Telecommunications Update ServiceFixed in: tigervnc-0:1.9.0-15.el8_2.4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.2 Update Services for SAP SolutionsFixed in: tigervnc-0:1.9.0-15.el8_2.4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update SupportFixed in: tigervnc-0:1.11.0-8.el8_4.3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSIONFixed in: tigervnc-0:1.1.0-25.el6_10.13
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.4 Update Services for SAP SolutionsFixed in: tigervnc-0:1.11.0-8.el8_4.3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.6 Extended Update SupportFixed in: tigervnc-0:1.12.0-6.el8_6.4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.8 Extended Update SupportFixed in: tigervnc-0:1.12.0-15.el8_8.1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: tigervnc-0:1.13.1-3.el9_3.3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: xorg-x11-server-0:1.20.11-24.el9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: xorg-x11-server-Xwayland-0:22.1.9-5.el9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.0 Extended Update SupportFixed in: tigervnc-0:1.11.0-22.el9_0.3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.2 Extended Update SupportFixed in: tigervnc-0:1.12.0-14.el9_2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.4 Telecommunications Update ServiceFixed in: tigervnc-0:1.11.0-8.el8_4.3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: xorg-x11-server-0:1.20.4-24.el7_9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: tigervnc-0:1.8.0-26.el7_9
View patch

Vendor Advisories (4)

denollm-deno-650ac71876afb4f8CRITICAL

HP ThinPro 8.1 SP 2 Security Updates

Apr 12, 2024
kerasllm-keras-d13bbd8768a57997CRITICAL

HP ThinPro 8.1 SP 2 Security Updates

Apr 12, 2024
redhatCVE-2023-5367Important

xorg-x11-server: Out-of-bounds write in XIChangeDeviceProperty/RRChangeOutputProperty

Oct 25, 2023
microsoft2023-Oct/CVE-2023-5367Important

Xorg-x11-server: out-of-bounds write in xichangedeviceproperty/rrchangeoutputproperty

Oct 10, 2023

References

lists.debian.org / debian-lts-announce/2023/10/msg00036.html
lists.fedoraproject.org / archives/list/[email protected]/message/2WS5E7H4A5J3U5YBCTMRPQVGWK5LVH7D
lists.fedoraproject.org / archives/list/[email protected]/message/3RK66CXMXO3PCPDU3GDY5FK4UYHUXQJT
lists.fedoraproject.org / archives/list/[email protected]/message/4YBK3I6SETHETBHDETFWM3VSZUQICIDV
lists.fedoraproject.org / archives/list/[email protected]/message/AKKIE626TZOOPD533EYN47J4RFNHZVOP
lists.fedoraproject.org / archives/list/[email protected]/message/HO2Q2NP6R62ZRQQG3XQ4AXUT7J2EKKKY
lists.fedoraproject.org / archives/list/[email protected]/message/L2RMNR4235YXZZQ2X7Q4MTOZDMZ7BBQU
lists.fedoraproject.org / archives/list/[email protected]/message/SEDJN4VFN57K5POOC7BNVD6L6WUUCSG6
lists.fedoraproject.org / archives/list/[email protected]/message/SN6KV4XGQJRVAOSM5C3CWMVAXO53COIP
lists.fedoraproject.org / archives/list/[email protected]/message/TJXNI4BXURC2BKPNAHFJK3C5ZETB7PER
security.gentoo.org / glsa/202401-30
security.netapp.com / advisory/ntap-20231130-0004
debian.org / security/2023/dsa-5534
access.redhat.com / errata/RHSA-2023:6802
Third Party Advisory
access.redhat.com / errata/RHSA-2023:6808
Third Party Advisory
access.redhat.com / errata/RHSA-2023:7373
Third Party Advisory
access.redhat.com / errata/RHSA-2023:7388
Third Party Advisory
access.redhat.com / errata/RHSA-2023:7405
Third Party Advisory
access.redhat.com / errata/RHSA-2023:7428
Third Party Advisory
access.redhat.com / errata/RHSA-2023:7436
Third Party Advisory
access.redhat.com / errata/RHSA-2023:7526
Third Party Advisory
access.redhat.com / errata/RHSA-2023:7533
Third Party Advisory
access.redhat.com / errata/RHSA-2024:0010
Third Party Advisory
access.redhat.com / errata/RHSA-2024:0128
Third Party Advisory
access.redhat.com / errata/RHSA-2024:2169
access.redhat.com / errata/RHSA-2024:2170
access.redhat.com / errata/RHSA-2024:2995
access.redhat.com / errata/RHSA-2024:2996
access.redhat.com / errata/RHSA-2025:12751
access.redhat.com / security/cve/CVE-2023-5367
Third Party Advisory
bugzilla.redhat.com / show_bug.cgi
Issue TrackingThird Party Advisory
lists.x.org / archives/xorg-announce/2023-October/003430.html
PatchVendor Advisory