ALT-PU-2021-1956-1
Package xorg-server updated to version 1.20.8-alt8 for branch c9f2 in task 271013.
Closed vulnerabilities
BDU:2021-01784
Уязвимость компонента XkbSetDeviceInfo пакета xorg-x11-server, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации
BDU:2021-03541
Уязвимость функции XkbSetMap реализации сервера X Window System X.Org Server, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
BDU:2021-03760
Уязвимость X.org сервера, связанная с целочисленной потерей значимости, позволяющая нарушителю получить доступ к конфиденциальной информации или вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2020-14360
A flaw was found in the X.Org Server before version 1.20.10. An out-of-bounds access in the XkbSetMap function may lead to a privilege escalation vulnerability. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Modified: 2024-11-21
CVE-2020-25712
A flaw was found in xorg-x11-server before 1.20.10. A heap-buffer overflow in XkbSetDeviceInfo may lead to a privilege escalation vulnerability. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Modified: 2024-11-21
CVE-2021-3472
A flaw was found in xorg-x11-server in versions before 1.20.11. An integer underflow can occur in xserver which can lead to a local privilege escalation. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
- [oss-security] 20210413 X.Org server security advisory: April 13, 2021
- [oss-security] 20210413 X.Org server security advisory: April 13, 2021
- https://bugzilla.redhat.com/show_bug.cgi?id=1944167
- https://bugzilla.redhat.com/show_bug.cgi?id=1944167
- https://gitlab.freedesktop.org/xorg/xserver/-/commit/7aaf54a1884f71dc363f0b884e57bcb67407a6cd
- https://gitlab.freedesktop.org/xorg/xserver/-/commit/7aaf54a1884f71dc363f0b884e57bcb67407a6cd
- [debian-lts-announce] 20210415 [SECURITY] [DLA 2627-1] xorg-server security update
- [debian-lts-announce] 20210415 [SECURITY] [DLA 2627-1] xorg-server security update
- FEDORA-2021-112d542766
- FEDORA-2021-112d542766
- FEDORA-2021-139f3fc21c
- FEDORA-2021-139f3fc21c
- FEDORA-2021-f7b4c97879
- FEDORA-2021-f7b4c97879
- FEDORA-2021-0e2981e013
- FEDORA-2021-0e2981e013
- https://lists.x.org/archives/xorg-announce/2021-April/003080.html
- https://lists.x.org/archives/xorg-announce/2021-April/003080.html
- https://lists.x.org/archives/xorg-announce/2021-April/003080.html
- https://lists.x.org/archives/xorg-announce/2021-April/003080.html
- https://seclists.org/oss-sec/2021/q2/20
- https://seclists.org/oss-sec/2021/q2/20
- GLSA-202104-02
- GLSA-202104-02
- DSA-4893
- DSA-4893
- https://www.tenable.com/plugins/nessus/148701
- https://www.tenable.com/plugins/nessus/148701
- https://www.zerodayinitiative.com/advisories/ZDI-21-463/
- https://www.zerodayinitiative.com/advisories/ZDI-21-463/