Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.1.13.2024.016.02
Categoría:Slackware Local Security Checks
Título:Slackware: Security Advisory (SSA:2024-016-02)
Resumen:The remote host is missing an update for the 'xorg-server' package(s) announced via the SSA:2024-016-02 advisory.
Descripción:Summary:
The remote host is missing an update for the 'xorg-server' package(s) announced via the SSA:2024-016-02 advisory.

Vulnerability Insight:
New xorg-server packages are available for Slackware 15.0 and -current to
fix security issues.


Here are the details from the Slackware 15.0 ChangeLog:
+--------------------------+
patches/packages/xorg-server-1.20.14-i586-11_slack15.0.txz: Rebuilt.
This update fixes security issues:
Heap buffer overflow in DeviceFocusEvent and ProcXIQueryPointer.
Reattaching to different master device may lead to out-of-bounds memory access.
Heap buffer overflow in XISendDeviceHierarchyEvent.
Heap buffer overflow in DisableDevice.
SELinux context corruption.
SELinux unlabeled GLX PBuffer.
For more information, see:
[links moved to references]
(* Security fix *)
patches/packages/xorg-server-xephyr-1.20.14-i586-11_slack15.0.txz: Rebuilt.
patches/packages/xorg-server-xnest-1.20.14-i586-11_slack15.0.txz: Rebuilt.
patches/packages/xorg-server-xvfb-1.20.14-i586-11_slack15.0.txz: Rebuilt.
patches/packages/xorg-server-xwayland-21.1.4-i586-10_slack15.0.txz: Rebuilt.
This update fixes security issues:
Heap buffer overflow in DeviceFocusEvent and ProcXIQueryPointer.
Reattaching to different master device may lead to out-of-bounds memory access.
Heap buffer overflow in XISendDeviceHierarchyEvent.
Heap buffer overflow in DisableDevice.
SELinux unlabeled GLX PBuffer.
For more information, see:
[links moved to references]
(* Security fix *)
+--------------------------+

Affected Software/OS:
'xorg-server' package(s) on Slackware 15.0, Slackware current.

Solution:
Please install the updated package(s).

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2023-6816
RHBZ#2257691
https://bugzilla.redhat.com/show_bug.cgi?id=2257691
RHSA-2024:0320
https://access.redhat.com/errata/RHSA-2024:0320
RHSA-2024:0557
https://access.redhat.com/errata/RHSA-2024:0557
RHSA-2024:0558
https://access.redhat.com/errata/RHSA-2024:0558
RHSA-2024:0597
https://access.redhat.com/errata/RHSA-2024:0597
RHSA-2024:0607
https://access.redhat.com/errata/RHSA-2024:0607
RHSA-2024:0614
https://access.redhat.com/errata/RHSA-2024:0614
RHSA-2024:0617
https://access.redhat.com/errata/RHSA-2024:0617
RHSA-2024:0621
https://access.redhat.com/errata/RHSA-2024:0621
RHSA-2024:0626
https://access.redhat.com/errata/RHSA-2024:0626
RHSA-2024:0629
https://access.redhat.com/errata/RHSA-2024:0629
RHSA-2024:2169
https://access.redhat.com/errata/RHSA-2024:2169
RHSA-2024:2170
https://access.redhat.com/errata/RHSA-2024:2170
RHSA-2024:2996
https://access.redhat.com/errata/RHSA-2024:2996
http://www.openwall.com/lists/oss-security/2024/01/18/1
https://access.redhat.com/security/cve/CVE-2023-6816
https://lists.debian.org/debian-lts-announce/2024/01/msg00016.html
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5J4H7CH565ALSZZYKOJFYDA5KFLG6NUK/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EJBMCWQ54R6ZL3MYU2D2JBW6JMZL7BQW/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/IZ75X54CN4IFYMIV7OK3JVZ57FHQIGIC/
https://security.gentoo.org/glsa/202401-30
https://security.netapp.com/advisory/ntap-20240307-0006/
Common Vulnerability Exposure (CVE) ID: CVE-2024-0229
RHBZ#2256690
https://bugzilla.redhat.com/show_bug.cgi?id=2256690
RHSA-2024:2995
https://access.redhat.com/errata/RHSA-2024:2995
https://access.redhat.com/security/cve/CVE-2024-0229
Common Vulnerability Exposure (CVE) ID: CVE-2024-0408
RHBZ#2257689
https://bugzilla.redhat.com/show_bug.cgi?id=2257689
https://access.redhat.com/security/cve/CVE-2024-0408
Common Vulnerability Exposure (CVE) ID: CVE-2024-0409
RHBZ#2257690
https://bugzilla.redhat.com/show_bug.cgi?id=2257690
https://access.redhat.com/security/cve/CVE-2024-0409
Common Vulnerability Exposure (CVE) ID: CVE-2024-21885
RHBZ#2256540
https://bugzilla.redhat.com/show_bug.cgi?id=2256540
https://access.redhat.com/security/cve/CVE-2024-21885
https://security.netapp.com/advisory/ntap-20240503-0004/
Common Vulnerability Exposure (CVE) ID: CVE-2024-21886
RHBZ#2256542
https://bugzilla.redhat.com/show_bug.cgi?id=2256542
https://access.redhat.com/security/cve/CVE-2024-21886
CopyrightCopyright (C) 2024 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.