<?xml version="1.0" encoding="UTF-8"?>
<cvrfdoc xmlns="http://www.icasi.org/CVRF/schema/cvrf/1.1" xmlns:cvrf="http://www.icasi.org/CVRF/schema/cvrf/1.1">
  <DocumentTitle xml:lang="en">libX11-6-1.7.2-1.2 on GA media</DocumentTitle>
  <DocumentType>SUSE Patch</DocumentType>
  <DocumentPublisher Type="Vendor">
    <ContactDetails>security@suse.de</ContactDetails>
    <IssuingAuthority>SUSE Security Team</IssuingAuthority>
  </DocumentPublisher>
  <DocumentTracking>
    <Identification>
      <ID>openSUSE-SU-2024:10918-1</ID>
    </Identification>
    <Status>Final</Status>
    <Version>1</Version>
    <RevisionHistory>
      <Revision>
        <Number>1</Number>
        <Date>2024-06-15T00:00:00Z</Date>
        <Description>current</Description>
      </Revision>
    </RevisionHistory>
    <InitialReleaseDate>2024-06-15T00:00:00Z</InitialReleaseDate>
    <CurrentReleaseDate>2024-06-15T00:00:00Z</CurrentReleaseDate>
    <Generator>
      <Engine>cve-database/bin/generate-cvrf.pl</Engine>
      <Date>2017-02-24T01:00:00Z</Date>
    </Generator>
  </DocumentTracking>
  <DocumentNotes>
    <Note Title="Topic" Type="Summary" Ordinal="1" xml:lang="en">libX11-6-1.7.2-1.2 on GA media</Note>
    <Note Title="Details" Type="General" Ordinal="2" xml:lang="en">These are all security issues fixed in the libX11-6-1.7.2-1.2 package on the GA media of openSUSE Tumbleweed.</Note>
    <Note Title="Terms of Use" Type="Legal Disclaimer" Ordinal="3" xml:lang="en">The CVRF data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).</Note>
    <Note Title="Patchnames" Type="Details" Ordinal="4" xml:lang="en">openSUSE-Tumbleweed-2024-10918</Note>
  </DocumentNotes>
  <DocumentDistribution xml:lang="en">Copyright SUSE LLC under the Creative Commons License 4.0 with Attribution (CC-BY-4.0)</DocumentDistribution>
  <DocumentReferences>
    <Reference Type="Self">
      <URL>https://www.suse.com/support/security/rating/</URL>
      <Description>SUSE Security Ratings</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2018-14598/</URL>
      <Description>SUSE CVE CVE-2018-14598 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2018-14599/</URL>
      <Description>SUSE CVE CVE-2018-14599 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2018-14600/</URL>
      <Description>SUSE CVE CVE-2018-14600 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2020-14344/</URL>
      <Description>SUSE CVE CVE-2020-14344 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2020-14363/</URL>
      <Description>SUSE CVE CVE-2020-14363 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2021-31535/</URL>
      <Description>SUSE CVE CVE-2021-31535 page</Description>
    </Reference>
  </DocumentReferences>
  <ProductTree xmlns="http://www.icasi.org/CVRF/schema/prod/1.1">
    <Branch Type="Product Family" Name="openSUSE Tumbleweed">
      <Branch Type="Product Name" Name="openSUSE Tumbleweed">
        <FullProductName ProductID="openSUSE Tumbleweed" CPE="cpe:/o:opensuse:tumbleweed">openSUSE Tumbleweed</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Version" Name="libX11-6-1.7.2-1.2">
      <FullProductName ProductID="libX11-6-1.7.2-1.2">libX11-6-1.7.2-1.2</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libX11-6-32bit-1.7.2-1.2">
      <FullProductName ProductID="libX11-6-32bit-1.7.2-1.2">libX11-6-32bit-1.7.2-1.2</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libX11-data-1.7.2-1.2">
      <FullProductName ProductID="libX11-data-1.7.2-1.2">libX11-data-1.7.2-1.2</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libX11-devel-1.7.2-1.2">
      <FullProductName ProductID="libX11-devel-1.7.2-1.2">libX11-devel-1.7.2-1.2</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libX11-devel-32bit-1.7.2-1.2">
      <FullProductName ProductID="libX11-devel-32bit-1.7.2-1.2">libX11-devel-32bit-1.7.2-1.2</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libX11-xcb1-1.7.2-1.2">
      <FullProductName ProductID="libX11-xcb1-1.7.2-1.2">libX11-xcb1-1.7.2-1.2</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libX11-xcb1-32bit-1.7.2-1.2">
      <FullProductName ProductID="libX11-xcb1-32bit-1.7.2-1.2">libX11-xcb1-32bit-1.7.2-1.2</FullProductName>
    </Branch>
    <Relationship ProductReference="libX11-6-1.7.2-1.2" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libX11-6-1.7.2-1.2">libX11-6-1.7.2-1.2 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libX11-6-32bit-1.7.2-1.2" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libX11-6-32bit-1.7.2-1.2">libX11-6-32bit-1.7.2-1.2 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libX11-data-1.7.2-1.2" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libX11-data-1.7.2-1.2">libX11-data-1.7.2-1.2 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libX11-devel-1.7.2-1.2" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libX11-devel-1.7.2-1.2">libX11-devel-1.7.2-1.2 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libX11-devel-32bit-1.7.2-1.2" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libX11-devel-32bit-1.7.2-1.2">libX11-devel-32bit-1.7.2-1.2 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libX11-xcb1-1.7.2-1.2" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libX11-xcb1-1.7.2-1.2">libX11-xcb1-1.7.2-1.2 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libX11-xcb1-32bit-1.7.2-1.2" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libX11-xcb1-32bit-1.7.2-1.2">libX11-xcb1-32bit-1.7.2-1.2 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
  </ProductTree>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="1">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">An issue was discovered in XListExtensions in ListExt.c in libX11 through 1.6.5. A malicious server can send a reply in which the first string overflows, causing a variable to be set to NULL that will be freed later on, leading to DoS (segmentation fault).</Note>
    </Notes>
    <CVE>CVE-2018-14598</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:libX11-6-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-6-32bit-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-data-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-devel-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-devel-32bit-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-xcb1-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-xcb1-32bit-1.7.2-1.2</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:N/I:N/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2018-14598.html</URL>
        <Description>CVE-2018-14598</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1102073</URL>
        <Description>SUSE Bug 1102073</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="2">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">An issue was discovered in libX11 through 1.6.5. The function XListExtensions in ListExt.c is vulnerable to an off-by-one error caused by malicious server responses, leading to DoS or possibly unspecified other impact.</Note>
    </Notes>
    <CVE>CVE-2018-14599</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:libX11-6-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-6-32bit-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-data-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-devel-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-devel-32bit-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-xcb1-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-xcb1-32bit-1.7.2-1.2</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>7.5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2018-14599.html</URL>
        <Description>CVE-2018-14599</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1102062</URL>
        <Description>SUSE Bug 1102062</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="3">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">An issue was discovered in libX11 through 1.6.5. The function XListExtensions in ListExt.c interprets a variable as signed instead of unsigned, resulting in an out-of-bounds write (of up to 128 bytes), leading to DoS or remote code execution.</Note>
    </Notes>
    <CVE>CVE-2018-14600</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:libX11-6-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-6-32bit-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-data-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-devel-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-devel-32bit-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-xcb1-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-xcb1-32bit-1.7.2-1.2</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>important</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>7.5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2018-14600.html</URL>
        <Description>CVE-2018-14600</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1102068</URL>
        <Description>SUSE Bug 1102068</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1178417</URL>
        <Description>SUSE Bug 1178417</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="4">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">An integer overflow leading to a heap-buffer overflow was found in The X Input Method (XIM) client was implemented in libX11 before version 1.6.10. As per upstream this is security relevant when setuid programs call XIM client functions while running with elevated privileges. No such programs are shipped with Red Hat Enterprise Linux.</Note>
    </Notes>
    <CVE>CVE-2020-14344</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:libX11-6-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-6-32bit-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-data-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-devel-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-devel-32bit-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-xcb1-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-xcb1-32bit-1.7.2-1.2</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>4.6</BaseScore>
        <Vector>AV:L/AC:L/Au:N/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2020-14344.html</URL>
        <Description>CVE-2020-14344</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1174628</URL>
        <Description>SUSE Bug 1174628</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1174638</URL>
        <Description>SUSE Bug 1174638</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1175880</URL>
        <Description>SUSE Bug 1175880</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="5">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">An integer overflow vulnerability leading to a double-free was found in libX11. This flaw allows a local privileged attacker to cause an application compiled with libX11 to crash, or in some cases, result in arbitrary code execution. The highest threat from this flaw is to confidentiality, integrity as well as system availability.</Note>
    </Notes>
    <CVE>CVE-2020-14363</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:libX11-6-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-6-32bit-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-data-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-devel-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-devel-32bit-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-xcb1-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-xcb1-32bit-1.7.2-1.2</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>important</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>4.6</BaseScore>
        <Vector>AV:L/AC:L/Au:N/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2020-14363.html</URL>
        <Description>CVE-2020-14363</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1175239</URL>
        <Description>SUSE Bug 1175239</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="6">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a client to send color-name requests with a name longer than the maximum size allowed by the protocol (and also longer than the maximum packet size for normal-sized packets). The user-controlled data exceeding the maximum size is then interpreted by the server as additional X protocol requests and executed, e.g., to disable X server authorization completely. For example, if the victim encounters malicious terminal control sequences for color codes, then the attacker may be able to take full control of the running graphical session.</Note>
    </Notes>
    <CVE>CVE-2021-31535</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:libX11-6-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-6-32bit-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-data-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-devel-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-devel-32bit-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-xcb1-1.7.2-1.2</ProductID>
        <ProductID>openSUSE Tumbleweed:libX11-xcb1-32bit-1.7.2-1.2</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>important</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>7.5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2021-31535.html</URL>
        <Description>CVE-2021-31535</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1182506</URL>
        <Description>SUSE Bug 1182506</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1191879</URL>
        <Description>SUSE Bug 1191879</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1205051</URL>
        <Description>SUSE Bug 1205051</Description>
      </Reference>
    </References>
  </Vulnerability>
</cvrfdoc>
