« List of all CVEs

CVE-2020-14344

Published: 8/5/2020 Last updated: 8/4/2024 Reserved: 6/17/2020

An integer overflow leading to a heap-buffer overflow was found in The X Input Method (XIM) client was implemented in libX11 before version 1.6.10. As per upstream this is security relevant when setuid programs call XIM client functions while running with elevated privileges. No such programs are shipped with Red Hat Enterprise Linux.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Metrics

Version Score Severity Vector String
3.1 6.7 Medium CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Opam packages affected (2)

conf-libX11 raylib

Products affected (1)

Product Vendor Version
libX11 The X11 Project 21.sp1 ap357181

References (26)