CVE-2020-14345
published 2020-09-15CVE-2020-14345: A flaw was found in X.Org Server before xorg-x11-server 1.20.9. An Out-Of-Bounds access in XkbSetNames function may lead to a privilege escalation…
PriorityP342high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.59%
44.9th percentile
A flaw was found in X.Org Server before xorg-x11-server 1.20.9. An Out-Of-Bounds access in XkbSetNames function may lead to a privilege escalation vulnerability. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | xorg-server | < xorg-server 2:1.20.9-1 (bookworm) | xorg-server 2:1.20.9-1 (bookworm) |
| x.org | x_server | < 1.20.9 | 1.20.9 |
| x.org | xorg-server | >= 0 < 2:1.20.9-1 | 2:1.20.9-1 |
| x.org | xorg-server | >= 0 < 2:1.20.9-1 | 2:1.20.9-1 |
| x.org | xorg-server | >= 0 < 2:1.20.9-1 | 2:1.20.9-1 |
| x.org | xorg-server | >= 0 < 2:1.20.9-1 | 2:1.20.9-1 |
| x.org | xorg-server | >= 0 < 2:1.15.1-0ubuntu2.11+esm2 | 2:1.15.1-0ubuntu2.11+esm2 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
X.Org X Server vulnerabilities
vendor_ubuntu·2020-09-09·CVSS 7.8
CVE-2020-14345 [HIGH] X.Org X Server vulnerabilities
Title: X.Org X Server vulnerabilities
Summary: Several security issues were fixed in X.Org X Server.
USN-4488-1 fixed several vulnerabilities in X.Org. This update provides
the corresponding update and also the update from USN-4490-1 for Ubuntu 14.04 ESM.
Original advisory details:
Jan-Niklas Sohn discovered that the X.Org X Server incorrectly handled the
input extension protocol. A local attacker could possibly use this issue to
escalate privileges. (CVE-2020-14346)
Jan-Niklas Sohn discovered that the X.Org X Server incorrectly initialized
memory. A local attacker could possibly use this issue to obtain sensitive
information. (CVE-2020-14347)
Jan-Niklas Sohn discovered that the X.Org X Server incorrectly handled the
XkbSelectEvents function. A local attacker could possibly use this
Ubuntu
X.Org X Server vulnerability
vendor_ubuntu·2020-09-08
CVE-2020-14345 X.Org X Server vulnerability
Title: X.Org X Server vulnerability
Summary: X.Org X Server could be made to crash or run programs if it received
specially crafted input.
Jan-Niklas Sohn discovered that the X.Org X Server incorrectly handled the
XkbSetNames function. A local attacker could possibly use this issue to
escalate privileges.
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
Red Hat
xorg-x11-server: Out-of-bounds access in XkbSetNames function
vendor_redhat·2020-08-25·CVSS 7.8
CVE-2020-14345 [HIGH] CWE-119 xorg-x11-server: Out-of-bounds access in XkbSetNames function
xorg-x11-server: Out-of-bounds access in XkbSetNames function
A flaw was found in X.Org Server before xorg-x11-server 1.20.9. An Out-Of-Bounds access in XkbSetNames function may lead to a privilege escalation vulnerability. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
A flaw was found in X.Org Server. An Out-Of-Bounds access in XkbSetNames function may lead to a privilege escalation vulnerability. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Statement: Xorg server does not run with root privileges in Red Hat Enterprise Linux 8, therefore this flaw has been rated as having moderate impact for Red Hat Enterprise linux 8.
Package: xorg-x11-server (R
Debian
CVE-2020-14345: xorg-server - A flaw was found in X.Org Server before xorg-x11-server 1.20.9. An Out-Of-Bounds...
vendor_debian·2020·CVSS 7.8
CVE-2020-14345 [HIGH] CVE-2020-14345: xorg-server - A flaw was found in X.Org Server before xorg-x11-server 1.20.9. An Out-Of-Bounds...
A flaw was found in X.Org Server before xorg-x11-server 1.20.9. An Out-Of-Bounds access in XkbSetNames function may lead to a privilege escalation vulnerability. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Scope: local
bookworm: resolved (fixed in 2:1.20.9-1)
bullseye: resolved (fixed in 2:1.20.9-1)
forky: resolved (fixed in 2:1.20.9-1)
sid: resolved (fixed in 2:1.20.9-1)
trixie: resolved (fixed in 2:1.20.9-1)
GHSA
GHSA-6xpw-chm5-x9v3: A flaw was found in X
ghsa_unreviewed·2022-05-24
CVE-2020-14345 [HIGH] CWE-119 GHSA-6xpw-chm5-x9v3: A flaw was found in X
A flaw was found in X.Org Server before xorg-x11-server 1.20.9. An Out-Of-Bounds access in XkbSetNames function may lead to a privilege escalation vulnerability. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
OSV
CVE-2020-14345: A flaw was found in X
osv·2020-09-15·CVSS 7.8
CVE-2020-14345 [HIGH] CVE-2020-14345: A flaw was found in X
A flaw was found in X.Org Server before xorg-x11-server 1.20.9. An Out-Of-Bounds access in XkbSetNames function may lead to a privilege escalation vulnerability. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
OSV
xorg-server vulnerabilities
osv·2020-09-09·CVSS 7.8
CVE-2020-14346 [HIGH] xorg-server vulnerabilities
xorg-server vulnerabilities
USN-4488-1 fixed several vulnerabilities in X.Org. This update provides
the corresponding update and also the update from USN-4490-1 for Ubuntu 14.04 ESM.
Original advisory details:
Jan-Niklas Sohn discovered that the X.Org X Server incorrectly handled the
input extension protocol. A local attacker could possibly use this issue to
escalate privileges. (CVE-2020-14346)
Jan-Niklas Sohn discovered that the X.Org X Server incorrectly initialized
memory. A local attacker could possibly use this issue to obtain sensitive
information. (CVE-2020-14347)
Jan-Niklas Sohn discovered that the X.Org X Server incorrectly handled the
XkbSelectEvents function. A local attacker could possibly use this issue to
escalate privileges. (CVE-2020-14361)
Jan-Niklas Sohn discovered
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-14345 xorg-x11-server: Out-of-bounds access in XkbSetNames function [fedora-all]
bugzilla·2020-08-25·CVSS 7.8
CVE-2020-14345 [HIGH] CVE-2020-14345 xorg-x11-server: Out-of-bounds access in XkbSetNames function [fedora-all]
CVE-2020-14345 xorg-x11-server: Out-of-bounds access in XkbSetNames function [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple suppor
Bugzilla
CVE-2020-14360 xorg-x11-server: Out-of-bounds access in XkbSetMap function
bugzilla·2020-08-17·CVSS 7.8
CVE-2020-14360 [HIGH] CVE-2020-14360 xorg-x11-server: Out-of-bounds access in XkbSetMap function
CVE-2020-14360 xorg-x11-server: Out-of-bounds access in XkbSetMap function
A flaw was found in X.Org Server. An Out-Of-Bounds access in XkbSetMap function may lead to a privilege escalation vulnerability. Root cause is same as CVE-2020-14345.
Discussion:
Acknowledgments:
Name: Jan-Niklas Sohn (Trend Micro Zero Day Initiative)
---
Created xorg-x11-server tracking bugs for this issue:
Affects: fedora-all [bug 1903258]
---
External References:
https://lists.x.org/archives/xorg-announce/2020-December/003066.html
---
Upstream patch: https://gitlab.freedesktop.org/xorg/xserver/-/commit/446ff2d3177087b8173fa779fa5b77a2a128988b
---
Statement:
The Xorg server in Red Hat Enterprise Linux 8 does not run with root privileges, thus this flaw has been rated as having a moderate impact on
Bugzilla
CVE-2020-14345 xorg-x11-server: Out-of-bounds access in XkbSetNames function
bugzilla·2020-07-30·CVSS 7.8
CVE-2020-14345 [HIGH] CVE-2020-14345 xorg-x11-server: Out-of-bounds access in XkbSetNames function
CVE-2020-14345 xorg-x11-server: Out-of-bounds access in XkbSetNames function
A flaw was found in X.Org Server. An Out-Of-Bounds access in XkbSetNames function may lead to a privilege escalation vulnerability.
Discussion:
This bug does not yet have an embargo date set, though CVE-2020-14347 does.
---
Acknowledgments:
Name: X.org project
Upstream: Jan-Niklas Sohn (Trend Micro Zero Day Initiative)
---
External References:
https://lists.x.org/archives/xorg-announce/2020-August/003058.html
---
Created xorg-x11-server tracking bugs for this issue:
Affects: fedora-all [bug 1872386]
---
Upstream commit:
https://gitlab.freedesktop.org/xorg/xserver/-/commit/f7cd1276bbd4fe3a9700096dec33b52b8440788d
---
Statement:
Xorg server does not run with root privileges in Red Hat Enterprise Li
http://www.openwall.com/lists/oss-security/2021/01/15/1https://bugzilla.redhat.com/show_bug.cgi?id=1862241https://lists.x.org/archives/xorg-announce/2020-August/003058.htmlhttps://security.gentoo.org/glsa/202012-01https://usn.ubuntu.com/4488-2/https://usn.ubuntu.com/4490-1/https://www.zerodayinitiative.com/advisories/ZDI-20-1416/http://www.openwall.com/lists/oss-security/2021/01/15/1https://bugzilla.redhat.com/show_bug.cgi?id=1862241https://lists.x.org/archives/xorg-announce/2020-August/003058.htmlhttps://security.gentoo.org/glsa/202012-01https://usn.ubuntu.com/4488-2/https://usn.ubuntu.com/4490-1/https://www.zerodayinitiative.com/advisories/ZDI-20-1416/
2020-09-15
Published