Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Containers
  • Support Cases
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Containers
  • Support Cases
  • Products & Services

    Products

    Support

    • Production Support
    • Development Support
    • Product Life Cycles

    Services

    • Consulting
    • Technical Account Management
    • Training & Certifications

    Documentation

    • Red Hat Enterprise Linux
    • Red Hat JBoss Enterprise Application Platform
    • Red Hat OpenStack Platform
    • Red Hat OpenShift Container Platform
    All Documentation

    Ecosystem Catalog

    • Red Hat Partner Ecosystem
    • Partner Resources
  • Tools

    Tools

    • Troubleshoot a product issue
    • Packages
    • Errata

    Customer Portal Labs

    • Configuration
    • Deployment
    • Security
    • Troubleshoot
    All labs

    Red Hat Insights

    Increase visibility into IT operations to detect and resolve technical issues before they impact your business.

    Learn More
    Go to Insights
  • Security

    Red Hat Product Security Center

    Engage with our Red Hat Product Security team, access security updates, and ensure your environments are not exposed to any known security vulnerabilities.

    Product Security Center

    Security Updates

    • Security Advisories
    • Red Hat CVE Database
    • Security Labs

    Keep your systems secure with Red Hat's specialized responses to security vulnerabilities.

    View Responses

    Resources

    • Security Blog
    • Security Measurement
    • Severity Ratings
    • Backporting Policies
    • Product Signing (GPG) Keys
  • Community

    Customer Portal Community

    • Discussions
    • Private Groups
    Community Activity

    Customer Events

    • Red Hat Convergence
    • Red Hat Summit

    Stories

    • Red Hat Subscription Value
    • You Asked. We Acted.
    • Open Source Communities
Or troubleshoot an issue.

Select Your Language

  • English
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Virtualization
  • Red Hat Identity Management
  • Red Hat Directory Server
  • Red Hat Certificate System
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Update Infrastructure
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat CloudForms
  • Red Hat OpenStack Platform
  • Red Hat OpenShift Container Platform
  • Red Hat OpenShift Data Science
  • Red Hat OpenShift Online
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat Single Sign On
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Thorntail
  • Red Hat build of Eclipse Vert.x
  • Red Hat build of OpenJDK
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Integration
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
  • Red Hat JBoss Data Virtualization
  • Red Hat Process Automation
  • Red Hat Process Automation Manager
  • Red Hat Decision Manager
All Products
Red Hat Product Errata RHSA-2020:4908 - Security Advisory
Issued:
2020-11-04
Updated:
2020-11-04

RHSA-2020:4908 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: libX11 security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for libX11 is now available for Red Hat Enterprise Linux 7.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The libX11 packages contain the core X11 protocol client library.

Security Fix(es):

  • libX11: integer overflow leads to double free in locale handling (CVE-2020-14363)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server 7 x86_64
  • Red Hat Enterprise Linux Workstation 7 x86_64
  • Red Hat Enterprise Linux Desktop 7 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 7 s390x
  • Red Hat Enterprise Linux for Power, big endian 7 ppc64
  • Red Hat Enterprise Linux for Scientific Computing 7 x86_64
  • Red Hat Enterprise Linux for Power, little endian 7 ppc64le

Fixes

  • BZ - 1872473 - CVE-2020-14363 libX11: integer overflow leads to double free in locale handling

CVEs

  • CVE-2020-14363

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server 7

SRPM
libX11-1.6.7-3.el7_9.src.rpm SHA-256: 69a17aa1e2154257eaeab559be132cbdf3e8b143d46513954893b53c2930648c
x86_64
libX11-1.6.7-3.el7_9.i686.rpm SHA-256: f64e0f791343a978e7b2d5f4de03b1629e2231443008e87a4b71a3d6360d15f8
libX11-1.6.7-3.el7_9.x86_64.rpm SHA-256: c16416638ccc5bf20facb188d45257ae299e1eb0747b370f6d90588533703eb8
libX11-common-1.6.7-3.el7_9.noarch.rpm SHA-256: 41c4f6170f6caed22c411702d365063ada3e5aa88dc8fd8e368a0281d4854334
libX11-debuginfo-1.6.7-3.el7_9.i686.rpm SHA-256: b2135a65bb74890e0accd23b97043c63becc54da3e377fa8671a1b3c47b58e69
libX11-debuginfo-1.6.7-3.el7_9.x86_64.rpm SHA-256: 08c6bd3b525006bf75b19f4885bce1c266999e9a4b107e91d89d77d04e384d93
libX11-devel-1.6.7-3.el7_9.i686.rpm SHA-256: fcda88510b9eeecbd32faf4170089ca704704068dd63202bd7c0c6004662d742
libX11-devel-1.6.7-3.el7_9.x86_64.rpm SHA-256: 929d442fc9a570dc1af0ce19c704c15d3160bc1a7d318cffa288e03be9ddbbc4

Red Hat Enterprise Linux Workstation 7

SRPM
libX11-1.6.7-3.el7_9.src.rpm SHA-256: 69a17aa1e2154257eaeab559be132cbdf3e8b143d46513954893b53c2930648c
x86_64
libX11-1.6.7-3.el7_9.i686.rpm SHA-256: f64e0f791343a978e7b2d5f4de03b1629e2231443008e87a4b71a3d6360d15f8
libX11-1.6.7-3.el7_9.x86_64.rpm SHA-256: c16416638ccc5bf20facb188d45257ae299e1eb0747b370f6d90588533703eb8
libX11-common-1.6.7-3.el7_9.noarch.rpm SHA-256: 41c4f6170f6caed22c411702d365063ada3e5aa88dc8fd8e368a0281d4854334
libX11-debuginfo-1.6.7-3.el7_9.i686.rpm SHA-256: b2135a65bb74890e0accd23b97043c63becc54da3e377fa8671a1b3c47b58e69
libX11-debuginfo-1.6.7-3.el7_9.x86_64.rpm SHA-256: 08c6bd3b525006bf75b19f4885bce1c266999e9a4b107e91d89d77d04e384d93
libX11-devel-1.6.7-3.el7_9.i686.rpm SHA-256: fcda88510b9eeecbd32faf4170089ca704704068dd63202bd7c0c6004662d742
libX11-devel-1.6.7-3.el7_9.x86_64.rpm SHA-256: 929d442fc9a570dc1af0ce19c704c15d3160bc1a7d318cffa288e03be9ddbbc4

Red Hat Enterprise Linux Desktop 7

SRPM
libX11-1.6.7-3.el7_9.src.rpm SHA-256: 69a17aa1e2154257eaeab559be132cbdf3e8b143d46513954893b53c2930648c
x86_64
libX11-1.6.7-3.el7_9.i686.rpm SHA-256: f64e0f791343a978e7b2d5f4de03b1629e2231443008e87a4b71a3d6360d15f8
libX11-1.6.7-3.el7_9.x86_64.rpm SHA-256: c16416638ccc5bf20facb188d45257ae299e1eb0747b370f6d90588533703eb8
libX11-common-1.6.7-3.el7_9.noarch.rpm SHA-256: 41c4f6170f6caed22c411702d365063ada3e5aa88dc8fd8e368a0281d4854334
libX11-debuginfo-1.6.7-3.el7_9.i686.rpm SHA-256: b2135a65bb74890e0accd23b97043c63becc54da3e377fa8671a1b3c47b58e69
libX11-debuginfo-1.6.7-3.el7_9.x86_64.rpm SHA-256: 08c6bd3b525006bf75b19f4885bce1c266999e9a4b107e91d89d77d04e384d93
libX11-devel-1.6.7-3.el7_9.i686.rpm SHA-256: fcda88510b9eeecbd32faf4170089ca704704068dd63202bd7c0c6004662d742
libX11-devel-1.6.7-3.el7_9.x86_64.rpm SHA-256: 929d442fc9a570dc1af0ce19c704c15d3160bc1a7d318cffa288e03be9ddbbc4

Red Hat Enterprise Linux for IBM z Systems 7

SRPM
libX11-1.6.7-3.el7_9.src.rpm SHA-256: 69a17aa1e2154257eaeab559be132cbdf3e8b143d46513954893b53c2930648c
s390x
libX11-1.6.7-3.el7_9.s390.rpm SHA-256: 12a76ec2bb31efc47548805742df45eebc66fa7209fbfbc0e3b7b67ad33507b6
libX11-1.6.7-3.el7_9.s390x.rpm SHA-256: 84ee2c7e469d5ef10d45a8b5efca1a451b084e74060e2d6023bd252750ed0aa6
libX11-common-1.6.7-3.el7_9.noarch.rpm SHA-256: 41c4f6170f6caed22c411702d365063ada3e5aa88dc8fd8e368a0281d4854334
libX11-debuginfo-1.6.7-3.el7_9.s390.rpm SHA-256: 17f3da8b72f874c92a5a768b1f746a6656cc60773abf84ec382cb911fe55d338
libX11-debuginfo-1.6.7-3.el7_9.s390x.rpm SHA-256: a9660d02a058b4bb3627c6b308cb53eadbe40f79a155339768970c0baa77363f
libX11-devel-1.6.7-3.el7_9.s390.rpm SHA-256: ecf264eac7fcb9317339ae6688413775567314caf85deb908421babec3ce6147
libX11-devel-1.6.7-3.el7_9.s390x.rpm SHA-256: dea63a105d0899b3388f14fb241d6b47b973a5e432c7b03c4ec09a14928ed9f4

Red Hat Enterprise Linux for Power, big endian 7

SRPM
libX11-1.6.7-3.el7_9.src.rpm SHA-256: 69a17aa1e2154257eaeab559be132cbdf3e8b143d46513954893b53c2930648c
ppc64
libX11-1.6.7-3.el7_9.ppc.rpm SHA-256: 3a48adab1b4da3554c6413a4e54973246d77b071f360ad839e1061815a24eae1
libX11-1.6.7-3.el7_9.ppc64.rpm SHA-256: 4fb65cde3feac9adb14d6cb4aa9ff403e1cc27076bad9075e3ea3171f40b39ff
libX11-common-1.6.7-3.el7_9.noarch.rpm SHA-256: 41c4f6170f6caed22c411702d365063ada3e5aa88dc8fd8e368a0281d4854334
libX11-debuginfo-1.6.7-3.el7_9.ppc.rpm SHA-256: d13e1e58023d64b6626d921479e99a25507758faca25cba5a15c1e8d0bb3b16a
libX11-debuginfo-1.6.7-3.el7_9.ppc64.rpm SHA-256: b0d8548428d85b5ea4709229d539eb45026cf1f2f550b19945183ba0af08af93
libX11-devel-1.6.7-3.el7_9.ppc.rpm SHA-256: 5adef6e319ab8e7099e4e02ea7c599266b53eb373b8bd30048e708131ec63938
libX11-devel-1.6.7-3.el7_9.ppc64.rpm SHA-256: bacc8b248dea56b856335d15c35e6d8d80dc31e752eadb248b31edfe05594949

Red Hat Enterprise Linux for Scientific Computing 7

SRPM
libX11-1.6.7-3.el7_9.src.rpm SHA-256: 69a17aa1e2154257eaeab559be132cbdf3e8b143d46513954893b53c2930648c
x86_64
libX11-1.6.7-3.el7_9.i686.rpm SHA-256: f64e0f791343a978e7b2d5f4de03b1629e2231443008e87a4b71a3d6360d15f8
libX11-1.6.7-3.el7_9.x86_64.rpm SHA-256: c16416638ccc5bf20facb188d45257ae299e1eb0747b370f6d90588533703eb8
libX11-common-1.6.7-3.el7_9.noarch.rpm SHA-256: 41c4f6170f6caed22c411702d365063ada3e5aa88dc8fd8e368a0281d4854334
libX11-debuginfo-1.6.7-3.el7_9.i686.rpm SHA-256: b2135a65bb74890e0accd23b97043c63becc54da3e377fa8671a1b3c47b58e69
libX11-debuginfo-1.6.7-3.el7_9.i686.rpm SHA-256: b2135a65bb74890e0accd23b97043c63becc54da3e377fa8671a1b3c47b58e69
libX11-debuginfo-1.6.7-3.el7_9.x86_64.rpm SHA-256: 08c6bd3b525006bf75b19f4885bce1c266999e9a4b107e91d89d77d04e384d93
libX11-debuginfo-1.6.7-3.el7_9.x86_64.rpm SHA-256: 08c6bd3b525006bf75b19f4885bce1c266999e9a4b107e91d89d77d04e384d93
libX11-devel-1.6.7-3.el7_9.i686.rpm SHA-256: fcda88510b9eeecbd32faf4170089ca704704068dd63202bd7c0c6004662d742
libX11-devel-1.6.7-3.el7_9.x86_64.rpm SHA-256: 929d442fc9a570dc1af0ce19c704c15d3160bc1a7d318cffa288e03be9ddbbc4

Red Hat Enterprise Linux for Power, little endian 7

SRPM
libX11-1.6.7-3.el7_9.src.rpm SHA-256: 69a17aa1e2154257eaeab559be132cbdf3e8b143d46513954893b53c2930648c
ppc64le
libX11-1.6.7-3.el7_9.ppc64le.rpm SHA-256: 0d918e23830ca233d78f6a84f20155f56f921a0f6d8269ee944b29fe5de497fb
libX11-common-1.6.7-3.el7_9.noarch.rpm SHA-256: 41c4f6170f6caed22c411702d365063ada3e5aa88dc8fd8e368a0281d4854334
libX11-debuginfo-1.6.7-3.el7_9.ppc64le.rpm SHA-256: 800722bac69a61d33f0f626f76404c757628af7847dc923d7b507ac027d1d651
libX11-devel-1.6.7-3.el7_9.ppc64le.rpm SHA-256: f55db7a879009f13d37d456c72e56a54ee50364b09dc2ddbce1b3841be933605

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

About

  • Red Hat Subscription Value
  • About Red Hat
  • Red Hat Jobs
Copyright © 2023 Red Hat, Inc.
  • Privacy Statement
  • Customer Portal Terms of Use
  • All Policies and Guidelines
Red Hat Summit
Twitter