VDB

GCVE-VVD-MAGEIA-2023-31

GCVE-VVD-MAGEIA-2023-31
Advisory Published
Vulnetix · Advisory published March 24, 2023
libXpm incorrectly handled calling external helper binaries. If libXpm was being used by a setuid binary, a local attacker could possibly use this issue to escalate privileges. (CVE-2022-4883) libXpm incorrectly handled certain XPM files. If a user or automated system were tricked into opening a specially crafted XPM file, a remote attacker could possibly use this issue to cause libXpm to stop responding, resulting in a denial of service. (CVE-2022-44617, CVE-2022-46285)

Affected Products

VendorProductVersionsPlatforms
Mageialibxpm0 (affected), 3.5.15-1.mga8 (unaffected), 0 (affected), 3.5.15-1.mga8 (unaffected)
Mageialibteam0 (affected), 1.31-1.1.mga8 (unaffected)

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›