[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256040

 
 

909

 
 

199103

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RLSA-2021:1804 --- xorg-x11-server

ID: oval:org.secpod.oval:def:4501349Date: (C)2023-04-03   (M)2023-12-20
Class: PATCHFamily: unix




X.Org is an open-source implementation of the X Window System. It provides the basic low-level functionality that full-fledged graphical user interfaces are designed upon. Mesa provides a 3D graphics API that is compatible with Open Graphics Library . It also provides hardware-accelerated drivers for many popular graphics chips. The following packages have been upgraded to a later upstream version: egl-wayland , libdrm , libglvnd , libinput , libwacom , mesa , xorg-x11-server . Security Fix: * xorg-x11-server: Out-of-bounds access in XkbSetNames function * xorg-x11-server: Integer underflow in the X input extension protocol * xorg-x11-server: Out-of-bounds access in XkbSetMap function * xorg-x11-server: XkbSelectEvents integer underflow privilege escalation vulnerability * xorg-x11-server: XRecordRegisterClients integer underflow privilege escalation vulnerability * libX11: Integer overflow leads to double free in locale handling * xorg-x11-server: XkbSetDeviceInfo heap-based buffer overflow privilege escalation vulnerability * libX11: Heap overflow in the X input method client * xorg-x11-server: Leak of uninitialized heap memory from the X server to clients in AllocatePixmap of dix/pixmap.c For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section.

Platform:
Rocky Linux 8
Product:
xorg-x11-server
libX11
xorg-x11-drivers
libwacom
libdrm
libinput
egl-wayland
libglvnd
mesa
Reference:
RLSA-2021:1804
CVE-2020-14344
CVE-2020-14345
CVE-2020-14346
CVE-2020-14347
CVE-2020-14360
CVE-2020-14361
CVE-2020-14362
CVE-2020-14363
CVE-2020-25712
CVE    9
CVE-2020-14346
CVE-2020-14347
CVE-2020-14344
CVE-2020-14345
...
CPE    5
cpe:/a:nvidia:egl-wayland
cpe:/a:x.org:xorg-x11-server
cpe:/a:x:libX11
cpe:/a:mesa3d:mesa
...

© SecPod Technologies