Allocation for pixmap data in AllocatePixmap() does not initialize the memory
in xserver, it leads to leak uninitialize heap memory to clients. When the X
server runs with elevated privileges. This flaw can lead to ASLR bypass, which
when combined with other flaws (known/unknown) could lead to lead to privilege
elevation in the client (CVE-2020-14347).
- https://bugs.mageia.org/show_bug.cgi?id=27031
- https://lists.x.org/archives/xorg-announce/2020-July/003051.html
- https://www.cve.org/CVERecord?id=CVE-2020-14347
- 7/core/x11-server-1.20.8-1.1.mga7
Get the latest Linux and open source security news straight to your inbox.