CVE-2021-4010
Summary
| CVE | CVE-2021-4010 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-12-17 17:15:00 UTC |
| Updated | 2023-11-07 03:40:00 UTC |
| Description | A flaw was found in xorg-x11-server in versions before 21.1.2 and before 1.20.14. An out-of-bounds access can occur in the SProcScreenSaverSuspend function. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [SECURITY] Fedora 35 Update: xorg-x11-server-1.20.14-1.fc35 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [ANNOUNCE] xorg-server 1.20.14 |
MISC |
lists.x.org |
|
| X.Org X server, XWayland: Multiple Vulnerabilities (GLSA 202305-30) — Gentoo security |
GENTOO |
security.gentoo.org |
|
| X.Org Security Advisory: December 14, 2021 |
MISC |
lists.x.org |
|
| [SECURITY] Fedora 35 Update: xorg-x11-server-Xwayland-21.1.4-1.fc35 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| [SECURITY] Fedora 35 Update: xorg-x11-server-Xwayland-21.1.4-1.fc35 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 34 Update: xorg-x11-server-Xwayland-21.1.4-1.fc34 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 34 Update: xorg-x11-server-Xwayland-21.1.4-1.fc34 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| [SECURITY] Fedora 34 Update: xorg-x11-server-1.20.14-1.fc34 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 35 Update: xorg-x11-server-1.20.14-1.fc35 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| Debian -- Security Information -- DSA-5027-1 xorg-server |
DEBIAN |
www.debian.org |
|
| ZDI-21-1549 | Zero Day Initiative |
MISC |
www.zerodayinitiative.com |
|
| [SECURITY] Fedora 34 Update: xorg-x11-server-1.20.14-1.fc34 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| January 2022 X.Org X Server Vulnerabilities in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 159586 Oracle Enterprise Linux Security Update for xorg-x11-server (ELSA-2022-0003)
- 159803 Oracle Enterprise Linux Security Update for xorg-x11-server and xorg-x11-server-xwayland (ELSA-2022-1917)
- 178949 Debian Security Update for xorg-server (DSA 5027-1)
- 184458 Debian Security Update for xwaylandxorg-server (CVE-2021-4010)
- 198603 Ubuntu Security Notification for X.Org X Server Vulnerabilities (USN-5193-1)
- 239982 Red Hat Update for xorg-x11-server (RHSA-2022:0003)
- 240317 Red Hat Update for xorg-x11-server and xorg-x11-server-xwayland (RHSA-2022:1917)
- 257140 CentOS Security Update for xorg-x11-server (CESA-2022:0003)
- 282172 Fedora Security Update for xorg (FEDORA-2021-2eb603951b)
- 282178 Fedora Security Update for xorg (FEDORA-2021-a7fd510294)
- 282210 Fedora Security Update for xorg (FEDORA-2021-69e96c8f68)
- 282214 Fedora Security Update for xorg (FEDORA-2021-664a6554a1)
- 296061 Oracle Solaris 11.4 Support Repository Update (SRU) 42.113.1 Missing (CPUJAN2022)
- 353119 Amazon Linux Security Advisory for xorg-x11-server : ALAS2-2022-1744
- 354703 Amazon Linux Security Advisory for xorg-x11-server : ALAS2022-2022-209
- 355170 Amazon Linux Security Advisory for xorg-x11-server : ALAS2023-2023-102
- 377217 Alibaba Cloud Linux Security Update for xorg-x11-server (ALINUX2-SA-2022:0001)
- 502202 Alpine Linux Security Update for xorg-server
- 502404 Alpine Linux Security Update for xwayland
- 671362 EulerOS Security Update for xorg-x11-server (EulerOS-SA-2022-1298)
- 671388 EulerOS Security Update for xorg-x11-server (EulerOS-SA-2022-1314)
- 671430 EulerOS Security Update for xorg-x11-server (EulerOS-SA-2022-1364)
- 671492 EulerOS Security Update for xorg-x11-server (EulerOS-SA-2022-1480)
- 671537 EulerOS Security Update for xorg-x11-server (EulerOS-SA-2022-1471)
- 710738 Gentoo Linux X.Org X server, XWayland Multiple Vulnerabilities (GLSA 202305-30)
- 730409 McAfee Web Gateway Multiple Vulnerabilities (WP-4451,WP-4134,WP-4350,WP-4331,WP-4408,WP-4440,WP-4444,WP-4518,WP-4347,WP-4416)
- 751529 SUSE Enterprise Linux Security Update for xorg-x11-server (SUSE-SU-2021:4122-1)
- 751537 SUSE Enterprise Linux Security Update for xorg-x11-server (SUSE-SU-2021:4136-1)
- 751538 OpenSUSE Security Update for xorg-x11-server (openSUSE-SU-2021:4136-1)
- 751545 OpenSUSE Security Update for xorg-x11-server (openSUSE-SU-2021:1606-1)
- 751754 OpenSUSE Security Update for xorg-x11-server (openSUSE-SU-2021:4136-2)
- 940551 AlmaLinux Security Update for xorg-x11-server and xorg-x11-server-Xwayland (ALSA-2022:1917)
- 960343 Rocky Linux Security Update for xorg-x11-server and xorg-x11-server-Xwayland (RLSA-2022:1917)