rpm package
suse/xorg-x11-server&distro=SUSE Linux Enterprise Server 12 SP4-LTSS
pkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4-LTSS
Vulnerabilities (23)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2020-14361 | — | < 1.19.6-4.11.1 | 1.19.6-4.11.1 | Sep 15, 2020 | A flaw was found in X.Org Server before xorg-x11-server 1.20.9. An Integer underflow leading to heap-buffer overflow may lead to a privilege escalation vulnerability. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availabilit | ||
| CVE-2020-14346 | — | < 1.19.6-4.8.1 | 1.19.6-4.8.1 | Sep 15, 2020 | A flaw was found in xorg-x11-server before 1.20.9. An integer underflow in the X input extension protocol decoding in the X server may lead to arbitrary access of memory contents. The highest threat from this vulnerability is to data confidentiality and integrity as well as syste | ||
| CVE-2020-14347 | — | < 1.19.6-4.8.1 | 1.19.6-4.8.1 | Aug 5, 2020 | A flaw was found in the way xserver memory was not properly initialized. This could leak parts of server memory to the X client. In cases where Xorg server runs with elevated privileges, this could result in possible ASLR bypass. Xorg-server before version 1.20.9 is vulnerable. |
- CVE-2020-14361Sep 15, 2020affected < 1.19.6-4.11.1fixed 1.19.6-4.11.1
A flaw was found in X.Org Server before xorg-x11-server 1.20.9. An Integer underflow leading to heap-buffer overflow may lead to a privilege escalation vulnerability. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availabilit
- CVE-2020-14346Sep 15, 2020affected < 1.19.6-4.8.1fixed 1.19.6-4.8.1
A flaw was found in xorg-x11-server before 1.20.9. An integer underflow in the X input extension protocol decoding in the X server may lead to arbitrary access of memory contents. The highest threat from this vulnerability is to data confidentiality and integrity as well as syste
- CVE-2020-14347Aug 5, 2020affected < 1.19.6-4.8.1fixed 1.19.6-4.8.1
A flaw was found in the way xserver memory was not properly initialized. This could leak parts of server memory to the X client. In cases where Xorg server runs with elevated privileges, this could result in possible ASLR bypass. Xorg-server before version 1.20.9 is vulnerable.
Page 2 of 2