AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-6816

CRITICAL · CVSS 9.8 EPSS 2.11%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2024-01-18 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. See the original NVD description below for full technical details.

CVE
CVE-2023-6816
Severity
CRITICAL
CVSS
9.8
EPSS
2.11%

Original NVD Description

A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQueryPointer reply contain a bit for each logical button currently down. Buttons can be arbitrarily mapped to any value up to 255, but the X.Org Server was only allocating space for the device's particular number of buttons, leading to a heap overflow if a bigger value was used.

Related CVEs

Other vulnerabilities affecting the same vendor(s)