{"id":"CVE-2024-0229","summary":"Xorg-x11-server: reattaching to different master device may lead to out-of-bounds memory access","details":"An out-of-bounds memory access flaw was found in the X.Org server. This issue can be triggered when a device frozen by a sync grab is reattached to a different master device. This issue may lead to an application crash, local privilege escalation (if the server runs with extended privileges), or remote code execution in SSH X11 forwarding environments.","modified":"2026-08-26T03:30:20.529626830Z","published":"2024-02-09T06:29:51.542Z","related":["ALSA-2024:0557","ALSA-2024:0607","ALSA-2024:2169","ALSA-2024:2170","ALSA-2024:2995","ALSA-2024:2996","SUSE-SU-2024:0109-1","SUSE-SU-2024:0111-1","SUSE-SU-2024:0114-1","SUSE-SU-2024:0116-1","SUSE-SU-2024:0121-1","SUSE-SU-2024:0165-1","openSUSE-SU-2024:13597-1","openSUSE-SU-2024:13598-1"],"database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/0xxx/CVE-2024-0229.json","cna_assigner":"redhat","cwe_ids":["CWE-787"]},"references":[{"type":"WEB","url":"https://access.redhat.com/downloads/content/package-browser/"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2024/01/msg00016.html"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5J4H7CH565ALSZZYKOJFYDA5KFLG6NUK/"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EJBMCWQ54R6ZL3MYU2D2JBW6JMZL7BQW/"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/IZ75X54CN4IFYMIV7OK3JVZ57FHQIGIC/"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:0320"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:0557"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:0558"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:0597"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:0607"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:0614"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:0617"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:0621"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:0626"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:0629"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:2169"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:2170"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:2995"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2024:2996"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2025:12751"},{"type":"ADVISORY","url":"https://access.redhat.com/security/cve/CVE-2024-0229"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/0xxx/CVE-2024-0229.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-0229"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2256690"},{"type":"PACKAGE","url":"https://gitlab.freedesktop.org/xorg/xserver"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://gitlab.freedesktop.org/xorg/xserver","events":[{"introduced":"2a327e58609e2bf53a9043eab4b36bc64168197a"},{"fixed":"31407c0199da877b359b2e37bb371804321279b7"}],"database_specific":{"extracted_events":[{"introduced":"21.1.0"},{"fixed":"21.1.11"}],"source":"AFFECTED_FIELD"}}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-0229.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}