A flaw was found in the X.org server. Due to improperly tracked allocation size in _XkbSetCompatMap, a local attacker may be able to trigger a buffer overflow condition via a specially crafted payload, leading to denial of service or local privilege escalation in distributions where the X.org server is run with root privileges.
A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().
Name | Vendor | Start Version | End Version |
---|---|---|---|
Red Hat Enterprise Linux 7 Extended Lifecycle Support | RedHat | tigervnc-0:1.8.0-34.el7_9 | * |
Red Hat Enterprise Linux 8 | RedHat | xorg-x11-server-0:1.20.11-25.el8_10 | * |
Red Hat Enterprise Linux 8 | RedHat | xorg-x11-server-Xwayland-0:21.1.3-17.el8_10 | * |
Red Hat Enterprise Linux 8 | RedHat | tigervnc-0:1.13.1-14.el8_10 | * |
Red Hat Enterprise Linux 8.2 Advanced Update Support | RedHat | tigervnc-0:1.9.0-15.el8_2.12 | * |
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | RedHat | tigervnc-0:1.11.0-8.el8_4.11 | * |
Red Hat Enterprise Linux 8.4 Telecommunications Update Service | RedHat | tigervnc-0:1.11.0-8.el8_4.11 | * |
Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions | RedHat | tigervnc-0:1.11.0-8.el8_4.11 | * |
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | RedHat | tigervnc-0:1.12.0-6.el8_6.12 | * |
Red Hat Enterprise Linux 8.6 Telecommunications Update Service | RedHat | tigervnc-0:1.12.0-6.el8_6.12 | * |
Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions | RedHat | tigervnc-0:1.12.0-6.el8_6.12 | * |
Red Hat Enterprise Linux 8.8 Extended Update Support | RedHat | tigervnc-0:1.12.0-15.el8_8.11 | * |
Red Hat Enterprise Linux 9 | RedHat | tigervnc-0:1.14.1-1.el9_5 | * |
Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | RedHat | tigervnc-0:1.11.0-22.el9_0.12 | * |
Red Hat Enterprise Linux 9.2 Extended Update Support | RedHat | tigervnc-0:1.12.0-14.el9_2.9 | * |
Red Hat Enterprise Linux 9.4 Extended Update Support | RedHat | tigervnc-0:1.13.1-8.el9_4.4 | * |
Xorg-server | Ubuntu | devel | * |
Xorg-server | Ubuntu | esm-infra/bionic | * |
Xorg-server | Ubuntu | esm-infra/xenial | * |
Xorg-server | Ubuntu | focal | * |
Xorg-server | Ubuntu | jammy | * |
Xorg-server | Ubuntu | noble | * |
Xorg-server | Ubuntu | oracular | * |
Xorg-server | Ubuntu | trusty/esm | * |
Xorg-server | Ubuntu | upstream | * |
Xorg-server-hwe-16.04 | Ubuntu | esm-infra/xenial | * |
Xorg-server-hwe-18.04 | Ubuntu | esm-infra/bionic | * |
Xwayland | Ubuntu | devel | * |
Xwayland | Ubuntu | jammy | * |
Xwayland | Ubuntu | noble | * |
Xwayland | Ubuntu | oracular | * |
Xwayland | Ubuntu | upstream | * |