A flaw was found in the X.Org X server. This integer underflow vulnerability, specifically in the XKB compatibility map handling, allows an attacker with local or remote X11 server access to trigger a buffer read overrun. This can lead to memory-safety violations and potentially a denial of service (DoS) or other severe impacts.
The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | RedHat | xorg-x11-server-Xwayland-0:24.1.5-6.el10_1 | * |
| Red Hat Enterprise Linux 10 | RedHat | xorg-x11-server-Xwayland-0:24.1.9-4.el10_2 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | xorg-x11-server-Xwayland-0:24.1.5-6.el10_0 | * |
| Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION | RedHat | tigervnc-0:1.1.0-25.el6_10.16 | * |
| Red Hat Enterprise Linux 7 Extended Lifecycle Support | RedHat | xorg-x11-server-0:1.20.4-34.el7_9 | * |
| Red Hat Enterprise Linux 7 Extended Lifecycle Support | RedHat | tigervnc-0:1.8.0-36.el7_9.4 | * |
| Red Hat Enterprise Linux 8 | RedHat | xorg-x11-server-Xwayland-0:21.1.3-20.el8_10 | * |
| Red Hat Enterprise Linux 8 | RedHat | xorg-x11-server-0:1.20.11-28.el8_10 | * |
| Red Hat Enterprise Linux 8 | RedHat | tigervnc-0:1.15.0-9.el8_10 | * |
| Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | RedHat | xorg-x11-server-0:1.20.10-4.el8_4 | * |
| Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | RedHat | tigervnc-0:1.11.0-8.el8_4.15 | * |
| Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On | RedHat | xorg-x11-server-0:1.20.10-4.el8_4 | * |
| Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On | RedHat | tigervnc-0:1.11.0-8.el8_4.15 | * |
| Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | RedHat | xorg-x11-server-Xwayland-0:21.1.3-2.el8_6.6 | * |
| Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | RedHat | xorg-x11-server-0:1.20.11-7.el8_6 | * |
| Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | RedHat | tigervnc-0:1.12.0-6.el8_6.17 | * |
| Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On | RedHat | tigervnc-0:1.12.0-6.el8_6.17 | * |
| Red Hat Enterprise Linux 8.6 Telecommunications Update Service | RedHat | xorg-x11-server-Xwayland-0:21.1.3-2.el8_6.6 | * |
| Red Hat Enterprise Linux 8.6 Telecommunications Update Service | RedHat | xorg-x11-server-0:1.20.11-7.el8_6 | * |
| Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions | RedHat | xorg-x11-server-Xwayland-0:21.1.3-2.el8_6.6 | * |
| Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions | RedHat | xorg-x11-server-0:1.20.11-7.el8_6 | * |
| Red Hat Enterprise Linux 8.8 Telecommunications Update Service | RedHat | xorg-x11-server-Xwayland-0:21.1.3-13.el8_8 | * |
| Red Hat Enterprise Linux 8.8 Telecommunications Update Service | RedHat | xorg-x11-server-0:1.20.11-18.el8_8 | * |
| Red Hat Enterprise Linux 8.8 Telecommunications Update Service | RedHat | tigervnc-0:1.12.0-15.el8_8.17 | * |
| Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions | RedHat | xorg-x11-server-Xwayland-0:21.1.3-13.el8_8 | * |
| Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions | RedHat | xorg-x11-server-0:1.20.11-18.el8_8 | * |
| Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions | RedHat | tigervnc-0:1.12.0-15.el8_8.17 | * |
| Red Hat Enterprise Linux 9 | RedHat | tigervnc-0:1.15.0-6.el9_7.1 | * |
| Red Hat Enterprise Linux 9 | RedHat | xorg-x11-server-Xwayland-0:23.2.7-6.el9_7 | * |
| Red Hat Enterprise Linux 9 | RedHat | xorg-x11-server-0:1.20.11-33.el9_7 | * |
| Red Hat Enterprise Linux 9 | RedHat | tigervnc-0:1.15.0-7.el9_8.1 | * |
| Red Hat Enterprise Linux 9 | RedHat | xorg-x11-server-0:1.20.11-34.el9_8 | * |
| Red Hat Enterprise Linux 9 | RedHat | xorg-x11-server-Xwayland-0:24.1.9-4.el9_8 | * |
| Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | RedHat | xorg-x11-server-Xwayland-0:21.1.3-5.el9_0 | * |
| Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | RedHat | xorg-x11-server-0:1.20.11-13.el9_0 | * |
| Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | RedHat | tigervnc-0:1.11.0-22.el9_0.17 | * |
| Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | RedHat | xorg-x11-server-Xwayland-0:21.1.3-10.el9_2 | * |
| Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | RedHat | xorg-x11-server-0:1.20.11-20.el9_2 | * |
| Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | RedHat | tigervnc-0:1.12.0-14.el9_2.14 | * |
| Red Hat Enterprise Linux 9.4 Extended Update Support | RedHat | xorg-x11-server-0:1.20.11-28.el9_4 | * |
| Red Hat Enterprise Linux 9.4 Extended Update Support | RedHat | xorg-x11-server-Xwayland-0:22.1.9-8.el9_4 | * |
| Red Hat Enterprise Linux 9.4 Extended Update Support | RedHat | tigervnc-0:1.13.1-8.el9_4.9 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | xorg-x11-server-0:1.20.11-33.el9_6 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | xorg-x11-server-Xwayland-0:23.2.7-6.el9_6 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | tigervnc-0:1.14.1-10.el9_6 | * |
| Xorg-server | Ubuntu | esm-infra/xenial | * |
| Xorg-server-hwe-16.04 | Ubuntu | esm-infra/xenial | * |