vendor:
Xorg-X11-Server
by:
Marco Ivaldi
6.6
CVSS
MEDIUM
Local Privilege Escalation
269
CWE
Product Name: Xorg-X11-Server
Affected Version From: 1.19.0
Affected Version To: 1.20.2
Patch Exists: YES
Related CWE: CVE-2018-14665
CPE: a:xorg:xorg-x11-server
Metasploit:
https://www.rapid7.com/db/vulnerabilities/oracle_linux-cve-2018-14665/, https://www.rapid7.com/db/vulnerabilities/debian-cve-2018-14665/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp2-cve-2018-14665/, https://www.rapid7.com/db/vulnerabilities/redhat_linux-cve-2018-14665/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp3-cve-2018-14665/, https://www.rapid7.com/db/vulnerabilities/ibm-aix-cve-2018-14665/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp5-cve-2018-14665/, https://www.rapid7.com/db/vulnerabilities/centos_linux-cve-2018-14665/, https://www.rapid7.com/db/vulnerabilities/alpine-linux-cve-2018-14665/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2018-14665/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp8-cve-2018-14665/, https://www.rapid7.com/db/vulnerabilities/ubuntu-cve-2018-14665/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2018-14665/, https://www.rapid7.com/db/vulnerabilities/oracle-solaris-cve-2018-14665/
Other Scripts:
N/A
Platforms Tested: Solaris 11 X86, Solaris 11 SPARC, CentOS Linux 7, Red Hat Enterprise Linux 7, Ubuntu Linux 18.10, Ubuntu Linux 18.04 LTS, Ubuntu Linux 1.6.1, Debian Linux 9, OpenBSD 6.4
2018
xorg-x11-server LPE via modulepath switch
A flaw was found in xorg-x11-server before 1.20.3. An incorrect permission check for -modulepath and -logfile options when starting Xorg. X server allows unprivileged users with the ability to log in to the system via physical console to escalate their privileges and run arbitrary code under root privileges (CVE-2018-14665). This exploit variant triggers the bug in the -modulepath command line switch to load a malicious X11 module in order to escalate privileges to root on vulnerable systems.
Mitigation:
Upgrade to xorg-x11-server version 1.20.3 or later.