Lucene search

K
mageiaGentoo FoundationMGASA-2023-0012
HistoryJan 24, 2023 - 10:58 a.m.

Updated x11-server packages fix security vulnerability

2023-01-2410:58:24
Gentoo Foundation
advisories.mageia.org
27
x11-server
security
vulnerability
cve-2022-4283
cve-2022-46340
cve-2022-46341
cve-2022-46342
cve-2022-46343
cve-2022-46344
unix

8.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

0.036 Low

EPSS

Percentile

91.7%

X.Org Server XkbGetKbdByName use-after-free. (CVE-2022-4283) X.Org Server XTestSwapFakeInput stack overflow. (CVE-2022-46340) X.Org Server XIPassiveUngrab out-of-bounds access. (CVE-2022-46341) X.Org Server XvdiSelectVideoNotify use-after-free. (CVE-2022-46342) X.Org Server ScreenSaverSetAttributes use-after-free. (CVE-2022-46343) X.Org Server XIChangeProperty out-of-bounds access. (CVE-2022-46344)

OSVersionArchitecturePackageVersionFilename
Mageia8noarchx11-server< 1.20.14-4.1x11-server-1.20.14-4.1.mga8

8.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

0.036 Low

EPSS

Percentile

91.7%