ALT-PU-2025-4785-2
Package xorg-server updated to version 1.20.8-alt13 for branch c9f2 in task 379279.
Closed vulnerabilities
Published: 2020-08-25
BDU:2020-03915
Уязвимость сервера X Window System Xorg-server, связанная с некорректной инициализацией памяти, позволяющая нарушителю вызвать утечку части серверной памяти для клиента Xorg-server
Severity: MEDIUM (5.3)
Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
References:
Published: 2020-08-05
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2020-14347
A flaw was found in the way xserver memory was not properly initialized. This could leak parts of server memory to the X client. In cases where Xorg server runs with elevated privileges, this could result in possible ASLR bypass. Xorg-server before version 1.20.9 is vulnerable.
Severity: MEDIUM (5.5)
Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
References:
- openSUSE-SU-2020:1279
- openSUSE-SU-2020:1279
- openSUSE-SU-2020:1302
- openSUSE-SU-2020:1302
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-14347
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-14347
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2359-1] xorg-server security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2359-1] xorg-server security update
- https://lists.x.org/archives/xorg-announce/2020-July/003051.html
- https://lists.x.org/archives/xorg-announce/2020-July/003051.html
- GLSA-202012-01
- GLSA-202012-01
- USN-4488-1
- USN-4488-1
- USN-4488-2
- USN-4488-2
- DSA-4758
- DSA-4758
- https://www.openwall.com/lists/oss-security/2020/07/31/2
- https://www.openwall.com/lists/oss-security/2020/07/31/2