Описание
An integer overflow vulnerability leading to a double-free was found in libX11. This flaw allows a local privileged attacker to cause an application compiled with libX11 to crash, or in some cases, result in arbitrary code execution. The highest threat from this flaw is to confidentiality, integrity as well as system availability.
Отчет
Xorg server does not run with root privileges in Red Hat Enterprise Linux 8. Therefore this flaw has been rated as having a moderate impact for Red Hat Enterprise Linux 8.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 5 | libX11 | Out of support scope | ||
Red Hat Enterprise Linux 6 | libX11 | Fixed | RHSA-2020:4946 | 05.11.2020 |
Red Hat Enterprise Linux 7 | libX11 | Fixed | RHSA-2020:4908 | 04.11.2020 |
Red Hat Enterprise Linux 8 | egl-wayland | Fixed | RHSA-2021:1804 | 18.05.2021 |
Red Hat Enterprise Linux 8 | libdrm | Fixed | RHSA-2021:1804 | 18.05.2021 |
Red Hat Enterprise Linux 8 | libglvnd | Fixed | RHSA-2021:1804 | 18.05.2021 |
Red Hat Enterprise Linux 8 | libinput | Fixed | RHSA-2021:1804 | 18.05.2021 |
Red Hat Enterprise Linux 8 | libwacom | Fixed | RHSA-2021:1804 | 18.05.2021 |
Red Hat Enterprise Linux 8 | libX11 | Fixed | RHSA-2021:1804 | 18.05.2021 |
Red Hat Enterprise Linux 8 | mesa | Fixed | RHSA-2021:1804 | 18.05.2021 |
Показывать по
Дополнительная информация
Статус:
EPSS
7.8 High
CVSS3
Связанные уязвимости
An integer overflow vulnerability leading to a double-free was found in libX11. This flaw allows a local privileged attacker to cause an application compiled with libX11 to crash, or in some cases, result in arbitrary code execution. The highest threat from this flaw is to confidentiality, integrity as well as system availability.
An integer overflow vulnerability leading to a double-free was found in libX11. This flaw allows a local privileged attacker to cause an application compiled with libX11 to crash, or in some cases, result in arbitrary code execution. The highest threat from this flaw is to confidentiality, integrity as well as system availability.
An integer overflow vulnerability leading to a double-free was found i ...
EPSS
7.8 High
CVSS3