Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 146377 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.883288
Kategorie:CentOS Local Security Checks
Titel:CentOS: Security Advisory for xorg-x11-server-common (CESA-2020:4953)
Zusammenfassung:The remote host is missing an update for the 'xorg-x11-server-common'; package(s) announced via the CESA-2020:4953 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'xorg-x11-server-common'
package(s) announced via the CESA-2020:4953 advisory.

Vulnerability Insight:
X.Org is an open-source implementation of the X Window System. It provides
the basic low-level functionality that full-fledged graphical user
interfaces are designed upon.

Security Fix(es):

* xorg-x11-server: Out-of-bounds access in XkbSetNames function
(CVE-2020-14345)

* xorg-x11-server: Integer underflow in the X input extension protocol
(CVE-2020-14346)

* xorg-x11-server: XkbSelectEvents integer underflow privilege escalation
vulnerability (CVE-2020-14361)

* xorg-x11-server: XRecordRegisterClients integer underflow privilege
escalation vulnerability (CVE-2020-14362)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page(s) listed in the References section.

Affected Software/OS:
'xorg-x11-server-common' package(s) on CentOS 6.

Solution:
Please install the updated package(s).

CVSS Score:
4.6

CVSS Vector:
AV:L/AC:L/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2020-14345
https://security.gentoo.org/glsa/202012-01
https://www.zerodayinitiative.com/advisories/ZDI-20-1416/
https://bugzilla.redhat.com/show_bug.cgi?id=1862241
https://lists.x.org/archives/xorg-announce/2020-August/003058.html
http://www.openwall.com/lists/oss-security/2021/01/15/1
https://usn.ubuntu.com/4488-2/
https://usn.ubuntu.com/4490-1/
Common Vulnerability Exposure (CVE) ID: CVE-2020-14346
https://bugzilla.redhat.com/show_bug.cgi?id=1862246
https://www.zerodayinitiative.com/advisories/ZDI-20-1417/
Common Vulnerability Exposure (CVE) ID: CVE-2020-14361
https://bugzilla.redhat.com/show_bug.cgi?id=1869142
https://www.zerodayinitiative.com/advisories/ZDI-20-1418/
Common Vulnerability Exposure (CVE) ID: CVE-2020-14362
https://bugzilla.redhat.com/show_bug.cgi?id=1869144
https://www.zerodayinitiative.com/advisories/ZDI-20-1419/
CopyrightCopyright (C) 2020 Greenbone Networks GmbH

Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.