{"id":"MGASA-2020-0335","summary":"Updated x11-server packages fix security vulnerability","details":"Allocation for pixmap data in AllocatePixmap() does not initialize the memory\nin xserver, it leads to leak uninitialize heap memory to clients. When the X\nserver runs with elevated privileges. This flaw can lead to ASLR bypass, which\nwhen combined with other flaws (known/unknown) could lead to lead to privilege\nelevation in the client (CVE-2020-14347).\n","modified":"2026-04-16T04:42:17.061828987Z","published":"2020-08-18T18:47:25Z","upstream":["CVE-2020-14347"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2020-0335.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=27031"},{"type":"WEB","url":"https://lists.x.org/archives/xorg-announce/2020-July/003051.html"}],"affected":[{"package":{"name":"x11-server","ecosystem":"Mageia:7","purl":"pkg:rpm/mageia/x11-server?arch=source&distro=mageia-7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.20.8-1.1.mga7"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2020-0335.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}