First published: Tue Dec 14 2021(Updated: )
Jan-Niklas Sohn discovered that the X.Org X Server incorrectly handled certain inputs. An attacker could use this issue to cause the server to crash, resulting in a denial of service, or possibly execute arbitrary code and escalate privileges.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/xserver-xorg-core | <2:1.20.13-1ubuntu1.1 | 2:1.20.13-1ubuntu1.1 |
=21.10 | ||
All of | ||
ubuntu/xwayland | <2:21.1.2-0ubuntu1.1 | 2:21.1.2-0ubuntu1.1 |
=21.10 | ||
All of | ||
ubuntu/xserver-xorg-core | <2:1.20.11-1ubuntu1.2 | 2:1.20.11-1ubuntu1.2 |
=21.04 | ||
All of | ||
ubuntu/xwayland | <2:21.1.1-0ubuntu1.1 | 2:21.1.1-0ubuntu1.1 |
=21.04 | ||
All of | ||
ubuntu/xserver-xorg-core | <2:1.20.13-1ubuntu1~20.04.2 | 2:1.20.13-1ubuntu1~20.04.2 |
=20.04 | ||
All of | ||
ubuntu/xserver-xorg-core | <2:1.19.6-1ubuntu4.10 | 2:1.19.6-1ubuntu4.10 |
=18.04 | ||
All of | ||
ubuntu/xserver-xorg-core-hwe-18.04 | <2:1.20.8-2ubuntu2.2~18.04.6 | 2:1.20.8-2ubuntu2.2~18.04.6 |
=18.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Contains the following vulnerabilities)
The vulnerability ID is CVE-2021-4008, CVE-2021-4010, and CVE-2021-4011.
The severity of the vulnerability is not specified.
The X.Org X Server vulnerability affects Ubuntu versions 21.10, 21.04, 20.04, and 18.04.
An attacker can exploit the X.Org X Server vulnerability to cause a denial of service or execute arbitrary code.
The remedy for the X.Org X Server vulnerability is to update the affected packages to the specified versions.