Out-of-bounds Access in X.Org Server Affecting Multiple Versions
CVE-2021-4010

7.8HIGH

Key Information:

Vendor

X.org

Vendor
CVE Published:
17 December 2021

What is CVE-2021-4010?

A vulnerability exists within the xorg-x11-server that allows for out-of-bounds access in the SProcScreenSaverSuspend function. This critical flaw can potentially compromise data confidentiality and integrity, and also impact system availability. Affected versions include those prior to 21.1.2 and 1.20.14, necessitating prompt updates to safeguard systems against exploitation.

Affected Version(s)

xorg-x11-server xorg-x11-server 21.1.2, xorg-x11-server 1.20.14

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.