PT-2021-5837 · Xorg+10 · Xorg-X11-Server+10
Jan-Niklas Sohn
·
Published
2021-12-14
·
Updated
2024-06-15
·
CVE-2021-4009
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
xorg-x11-server versions before 21.1.2
xorg-x11-server versions before 1.20.14
Description
A flaw was found in the
SProcXFixesCreatePointerBarrier function, which can cause an out-of-bounds access. This issue poses a threat to data confidentiality and integrity, as well as system availability. The vulnerability can be exploited to gain access to confidential data, disrupt data integrity, and cause a denial of service.Recommendations
For xorg-x11-server versions before 21.1.2, update to version 21.1.2 or later.
For xorg-x11-server versions before 1.20.14, update to version 1.20.14 or later.
As a temporary workaround, consider disabling the
SProcXFixesCreatePointerBarrier function until a patch is available.Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Almalinux
Astra Linux
Centos
Linuxmint
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu
Xorg-X11-Server