vulnerability
SUSE: CVE-2018-14665: SUSE Linux Security Advisory
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
7 | (AV:L/AC:L/Au:N/C:C/I:C/A:C) | 2018-10-25 | 2018-10-26 | 2021-10-22 |
Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:C/A:C)
Published
2018-10-25
Added
2018-10-26
Modified
2021-10-22
Description
A flaw was found in xorg-x11-server before 1.20.3. An incorrect permission check for -modulepath and -logfile options when starting Xorg. X server allows unprivileged users with the ability to log in to the system via physical console to escalate their privileges and run arbitrary code under root privileges.
Solution(s)
suse-upgrade-xorg-x11-serversuse-upgrade-xorg-x11-server-extrasuse-upgrade-xorg-x11-server-sdksuse-upgrade-xorg-x11-server-sourcesuse-upgrade-xorg-x11-server-waylandsuse-upgrade-xorg-x11-xvnc

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.