CVE-2023-5380: Use After Free in Red Hat Red Hat Enterprise Linux 7
A use-after-free flaw was found in the xorg-x11-server. An X server crash may occur in a very specific and legacy configuration (a multi-screen setup with multiple protocol screens, also known as Zaphod mode) if the pointer is warped from within a window on one screen to the root window of the other screen and if the original window is destroyed followed by another window being destroyed.
CVE-2023-5380: Use After Free in Red Hat Red Hat Enterprise Linux 7
Description
A use-after-free flaw was found in the xorg-x11-server. An X server crash may occur in a very specific and legacy configuration (a multi-screen setup with multiple protocol screens, also known as Zaphod mode) if the pointer is warped from within a window on one screen to the root window of the other screen and if the original window is destroyed followed by another window being destroyed.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- redhat
- Date Reserved
- 2023-10-04T14:27:46.912Z
- Cvss Version
- 3.1
- State
- PUBLISHED
Threat ID: 690a5558a730e5a3d9d7c24f
Added to database: 11/4/2025, 7:34:48 PM
Last updated: 11/4/2025, 7:34:53 PM
Views: 1
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Related Threats
CVE-2023-5981: Observable Discrepancy in Red Hat Red Hat Enterprise Linux 8
MediumCVE-2023-5367: Out-of-bounds Write in Red Hat Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION
HighCVE-2023-5349: Missing Release of Memory after Effective Lifetime in rmagick
MediumCVE-2023-4693: Out-of-bounds Read in Red Hat Red Hat Enterprise Linux 8
MediumCVE-2023-4498: CWE-305: Authentication Bypass by Primary Weakness in Tenda N300 Wireless N VDSL2 Modem Router
UnknownActions
Need enhanced features?
Contact root@offseq.com for Pro access with improved analysis and higher rate limits.