CVE-2021-4011

HIGH

xorg-x11-server <21.1.2, <1.20.14 - Memory Corruption

Title source: llm
STIX 2.1

Description

A flaw was found in xorg-x11-server in versions before 21.1.2 and before 1.20.14. An out-of-bounds access can occur in the SwapCreateRegister function. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Scores

CVSS v3 7.8
EPSS 0.0004
EPSS Percentile 12.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-119
Status published
Products (8)
debian/debian_linux 9.0
debian/debian_linux 10.0
debian/debian_linux 11.0
fedoraproject/fedora 34
fedoraproject/fedora 35
x.org/x_server 21.1.0
x.org/x_server 21.1.1
x.org/x_server < 1.20.14
Published Dec 17, 2021
Tracked Since Feb 18, 2026