CVE-2021-4009 - log back

CVE-2021-4009 edited at 14 Dec 2021 19:39:29
Description
- A security issue has been found in X.Org before version 21.1.2. The handler for the CreatePointerBarrier request of the XFixes extension does not properly validate the request length leading to out of bounds memory write. This can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for SSH X forwarding sessions.
+ A security issue has been found in X.Org before version 21.1.2 and Xwayland before version 21.1.4. The handler for the CreatePointerBarrier request of the XFixes extension does not properly validate the request length leading to out of bounds memory write. This can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for SSH X forwarding sessions.
References
https://lists.x.org/archives/xorg-announce/2021-December/003122.html
+ https://lists.x.org/archives/xorg-announce/2021-December/003123.html
https://gitlab.freedesktop.org/xorg/xserver/-/commit/b5196750099ae6ae582e1f46bd0a6dad29550e02
CVE-2021-4009 edited at 14 Dec 2021 13:57:24
Severity
- Medium
+ High
References
https://lists.x.org/archives/xorg-announce/2021-December/003122.html
https://gitlab.freedesktop.org/xorg/xserver/-/commit/b5196750099ae6ae582e1f46bd0a6dad29550e02
Notes
CVE-2021-4009 edited at 14 Dec 2021 13:54:13
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Remote
Type
- Unknown
+ Arbitrary code execution
Description
+ A security issue has been found in X.Org before version 21.1.2. The handler for the CreatePointerBarrier request of the XFixes extension does not properly validate the request length leading to out of bounds memory write. This can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for SSH X forwarding sessions.
References
+ https://lists.x.org/archives/xorg-announce/2021-December/003122.html
+ https://gitlab.freedesktop.org/xorg/xserver/-/commit/b5196750099ae6ae582e1f46bd0a6dad29550e02
CVE-2021-4009 created at 14 Dec 2021 13:50:53