xorg-x11-server-1.20.4-16.el7

エラータID: AXSA:2021-1756:02

Release date: 
Thursday, May 20, 2021 - 06:12
Subject: 
xorg-x11-server-1.20.4-16.el7
Affected Channels: 
Asianux Server 7 for x86_64
Severity: 
High
Description: 

X.Org is an open-source implementation of the X Window System. It provides the basic low-level functionality that full-fledged graphical user interfaces are designed upon.

Security Fix(es):

* xorg-x11-server: XChangeFeedbackControl integer underflow leads to privilege escalation (CVE-2021-3472)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2021-3472
A flaw was found in xorg-x11-server in versions before 1.20.11. An integer underflow can occur in xserver which can lead to a local privilege escalation. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. xorg-x11-server-1.20.4-16.el7.src.rpm
    MD5: ba788eb760e3a3e74d15f074d0603dde
    SHA-256: d8c6df6fdd62a51626b9b59bbbb9daadacb71fc274236ce98955ed42634534d9
    Size: 5.93 MB

Asianux Server 7 for x86_64
  1. xorg-x11-server-common-1.20.4-16.el7.x86_64.rpm
    MD5: 44b1af5683741f91e8e6cdcc38eb898b
    SHA-256: a5f761b286106419784535b9f36a18c667d628ab7da8d7cc15653a77335ee477
    Size: 54.90 kB
  2. xorg-x11-server-Xephyr-1.20.4-16.el7.x86_64.rpm
    MD5: ed56a08479d29ab190ba4ae57cf2076a
    SHA-256: 9a2eb9558ceb2a015518edffea0f5923c9f04753c4468939319200bc5bd4de0c
    Size: 0.98 MB
  3. xorg-x11-server-Xorg-1.20.4-16.el7.x86_64.rpm
    MD5: 1a9e82c72b6da8bb788e167c6d60ab5a
    SHA-256: 0dca8d77b91982d119c949499890f10103f6ee27ddfbedeb57f52e58a02332a9
    Size: 1.45 MB
  4. xorg-x11-server-Xwayland-1.20.4-16.el7.x86_64.rpm
    MD5: 74f5bd67bd028f02571929ae31566c67
    SHA-256: 9f5cd19a632dbaf037e313756bbc0c3c3a8056d0e8d28b1ad453df50a4b5b0a1
    Size: 949.86 kB