Alerts This Week
Warning Icon 1 562
Alerts This Week
Warning Icon 1 562

openSUSE Leap 15.2: openSUSE-SU-2020:1164-1 Important: libX11 Heap Overflow

opensuse
Calendar Grey August 8, 2020
Dist Opensuse Esm H88
The recent critical security patch for openSUSE targeting libX11 remedies a significant heap overflow flaw, providing essential guidance for installation.
An update that fixes one vulnerability is now available.

Description

This update for libX11 fixes the following issues:

- Fixed XIM client heap overflows (CVE-2020-14344, bsc#1174628)

This update was imported from the SUSE:SLE-15:Update update project.

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.2:

zypper in -t patch openSUSE-2020-1164=1

Package List

- openSUSE Leap 15.2 (i586 x86_64):

libX11-6-1.6.5-lp152.5.3.1

libX11-6-debuginfo-1.6.5-lp152.5.3.1

libX11-debugsource-1.6.5-lp152.5.3.1

libX11-devel-1.6.5-lp152.5.3.1

libX11-xcb1-1.6.5-lp152.5.3.1

libX11-xcb1-debuginfo-1.6.5-lp152.5.3.1

libxcb-composite0-1.13-lp152.5.3.1

libxcb-composite0-debuginfo-1.13-lp152.5.3.1

libxcb-damage0-1.13-lp152.5.3.1

libxcb-damage0-debuginfo-1.13-lp152.5.3.1

libxcb-debugsource-1.13-lp152.5.3.1

libxcb-devel-1.13-lp152.5.3.1

libxcb-dpms0-1.13-lp152.5.3.1

libxcb-dpms0-debuginfo-1.13-lp152.5.3.1

libxcb-dri2-0-1.13-lp152.5.3.1

libxcb-dri2-0-debuginfo-1.13-lp152.5.3.1

libxcb-dri3-0-1.13-lp152.5.3.1

libxcb-dri3-0-debuginfo-1.13-lp152.5.3.1

libxcb-glx0-1.13-lp152.5.3.1

libxcb-glx0-debuginfo-1.13-lp152.5.3.1

libxcb-present0-1.13-lp152.5.3.1

libxcb-present0-debuginfo-1.13-lp152.5.3.1

libxcb-randr0-1.13-lp152.5.3.1

libxcb-randr0-debuginfo-1.13-lp152.5.3.1

libxcb-record0-1.13-lp152.5.3.1

libxcb-record0-debuginfo-1.13-lp152.5.3.1

libxcb-render0-1.13-lp152.5.3.1

libxcb-render0-debuginfo-1.13-lp15...

Read the Full Advisory

References

https://www.suse.com/security/cve/CVE-2020-14344.html

https://bugzilla.suse.com/1174628

--

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2020:1164-1
Rating: important
Affected Products: openSUSE Leap 15.2

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here