Nuglaanta ee Server-ka X.Org iyo libX11

Gudaha X.Org Server iyo libX11 laga helay laba baylahda:

  • CVE-2020-14347 - Ku guuldareysiga in la bilaabo xusuusta marka loo qoondeynayo pixmap buffers iyadoo la isticmaalayo AllocatePixmap() wicida waxay keeni kartaa in macmiilka X uu ka daadiyo macluumaadka ku jira tuubada marka server-ka X uu ku shaqeeyo mudnaanta sare. Diidashadan waxa loo isticmaali karaa in lagaga gudbo tignoolajiyada Ciwaanka ee Meel-ka-soocidda (ASLR). Marka lagu daro baylahda kale, dhibaatada waxaa loo isticmaali karaa in la abuuro ka faa'iidaysi si kor loogu qaado mudnaanta nidaamka. Sixitaannada hadda waa la heli karaa sidii balastar ahaan.
    Daabacaadda Siideynta dayactirka ee X.Org Server 1.20.9 ayaa la filayaa maalmaha soo socda.
  • CVE-2020-14344 Integer-ka buuxdhaafay ee XIM (Habka wax gelinta) ee hirgelinta libX11, taas oo u horseedi karta musuqmaasuqa meelaha xusuusta ee tuullada marka la farsameeyo farriimaha sida gaarka ah loo qaabeeyey ee habka wax gelinta.
    Arrintu waxay go'an tahay siideynta libX11 1.6.10.

Source: opennet.ru