ALT-PU-2021-1657-1
Package xorg-server updated to version 1.20.8-alt8 for branch p9 in task 269889.
Closed vulnerabilities
Published: 2021-04-26
BDU:2021-03760
Уязвимость X.org сервера, связанная с целочисленной потерей значимости, позволяющая нарушителю получить доступ к конфиденциальной информации или вызвать отказ в обслуживании
Severity: HIGH (7.8)
Vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
References:
Published: 2021-04-26
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2021-3472
A flaw was found in xorg-x11-server in versions before 1.20.11. An integer underflow can occur in xserver which can lead to a local privilege escalation. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Severity: HIGH (7.8)
Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
References:
- [oss-security] 20210413 X.Org server security advisory: April 13, 2021
- [oss-security] 20210413 X.Org server security advisory: April 13, 2021
- https://bugzilla.redhat.com/show_bug.cgi?id=1944167
- https://bugzilla.redhat.com/show_bug.cgi?id=1944167
- https://gitlab.freedesktop.org/xorg/xserver/-/commit/7aaf54a1884f71dc363f0b884e57bcb67407a6cd
- https://gitlab.freedesktop.org/xorg/xserver/-/commit/7aaf54a1884f71dc363f0b884e57bcb67407a6cd
- [debian-lts-announce] 20210415 [SECURITY] [DLA 2627-1] xorg-server security update
- [debian-lts-announce] 20210415 [SECURITY] [DLA 2627-1] xorg-server security update
- FEDORA-2021-112d542766
- FEDORA-2021-112d542766
- FEDORA-2021-139f3fc21c
- FEDORA-2021-139f3fc21c
- FEDORA-2021-f7b4c97879
- FEDORA-2021-f7b4c97879
- FEDORA-2021-0e2981e013
- FEDORA-2021-0e2981e013
- https://lists.x.org/archives/xorg-announce/2021-April/003080.html
- https://lists.x.org/archives/xorg-announce/2021-April/003080.html
- https://lists.x.org/archives/xorg-announce/2021-April/003080.html
- https://lists.x.org/archives/xorg-announce/2021-April/003080.html
- https://seclists.org/oss-sec/2021/q2/20
- https://seclists.org/oss-sec/2021/q2/20
- GLSA-202104-02
- GLSA-202104-02
- DSA-4893
- DSA-4893
- https://www.tenable.com/plugins/nessus/148701
- https://www.tenable.com/plugins/nessus/148701
- https://www.zerodayinitiative.com/advisories/ZDI-21-463/
- https://www.zerodayinitiative.com/advisories/ZDI-21-463/