CVE-2024-9632 is a heap-based buffer overflow vulnerability in the X.org server, specifically within the _XkbSetCompatMap function, which could allow a local attacker to achieve denial of service or local privilege escalation. This vulnerability carries a CVSS score of 7.8 (High), indicating a low attack complexity and requiring local access, with potential for high impact on confidentiality, integrity, and availability. While the vulnerability is significant, there is currently no evidence of active exploitation, no public exploit code available, and minimal community discussion or media coverage beyond a single article.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 8 | Range not provided by sourceCNA affecteddefault affected | |
| Red Hat | Red Hat Enterprise Linux 9 | Range not provided by sourceCNA affecteddefault affected | |
| Red Hat | Red Hat Enterprise Linux 8.2 Advanced Update Support | Range not provided by sourceCNA affecteddefault affected | |
| Red Hat | Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | Range not provided by sourceCNA affecteddefault affected | |
| Red Hat | Red Hat Enterprise Linux 8.4 Telecommunications Update Service | Range not provided by sourceCNA affecteddefault affected |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
HP ThinPro 8.1 SP6 Security Updates
Mar 3, 2025HP ThinPro 8.1 SP6 Security Updates
Mar 3, 2025HP ThinPro 8.1 SP6 Security Updates
Mar 3, 2025HP ThinPro 8.1 SP6 Security Updates
Mar 3, 2025CVE-2024-9632
Nov 12, 2024xorg-x11-server: tigervnc: heap-based buffer overflow privilege escalation vulnerability
Oct 29, 2024Xorg-x11-server: tigervnc: heap-based buffer overflow privilege escalation vulnerability
Oct 8, 2024