xcb is vulnerable to Operation on a Resource after Expiration or Release
63
Medium Risk
Affected versions of this package are vulnerable to Operation on a Resource after Expiration or Release in the Connection::connect_with_fd and Connection::connect_with_fd_and_extensions functions. By supplying a crafted RawFd, an attacker can trigger unintended closure of file descriptors, potentially leading to use-after-close conditions, resource mismanagement, or denial of service through repeated closure of already-closed descriptors.
You are affected if you are using a version which is within vulnerability ranges
xcb is vulnerable to Operation on a Resource after Expiration or Release in versions 0.4.0 - 1.5.0.
Upgrade the xcb library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant