A flaw was found in the X.Org X servers XKB key types request validation. A local attacker could send a specially crafted request to the X server, leading to an out-of-bounds memory access vulnerability. This could result in the disclosure of sensitive information or cause the server to crash, leading to a Denial of Service (DoS). In certain configurations, higher impact outcomes may be possible.
The product reads data past the end, or before the beginning, of the intended buffer.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | RedHat | xorg-x11-server-Xwayland-0:24.1.5-6.el10_1 | * |
| Red Hat Enterprise Linux 10 | RedHat | xorg-x11-server-Xwayland-0:24.1.9-4.el10_2 | * |
| Red Hat Enterprise Linux 10.0 Extended Update Support | RedHat | xorg-x11-server-Xwayland-0:24.1.5-6.el10_0 | * |
| Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION | RedHat | tigervnc-0:1.1.0-25.el6_10.16 | * |
| Red Hat Enterprise Linux 7 Extended Lifecycle Support | RedHat | xorg-x11-server-0:1.20.4-34.el7_9 | * |
| Red Hat Enterprise Linux 7 Extended Lifecycle Support | RedHat | tigervnc-0:1.8.0-36.el7_9.4 | * |
| Red Hat Enterprise Linux 8 | RedHat | xorg-x11-server-Xwayland-0:21.1.3-20.el8_10 | * |
| Red Hat Enterprise Linux 8 | RedHat | xorg-x11-server-0:1.20.11-28.el8_10 | * |
| Red Hat Enterprise Linux 8 | RedHat | tigervnc-0:1.15.0-9.el8_10 | * |
| Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | RedHat | xorg-x11-server-0:1.20.10-4.el8_4 | * |
| Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | RedHat | tigervnc-0:1.11.0-8.el8_4.15 | * |
| Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On | RedHat | xorg-x11-server-0:1.20.10-4.el8_4 | * |
| Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On | RedHat | tigervnc-0:1.11.0-8.el8_4.15 | * |
| Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | RedHat | xorg-x11-server-Xwayland-0:21.1.3-2.el8_6.6 | * |
| Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | RedHat | xorg-x11-server-0:1.20.11-7.el8_6 | * |
| Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | RedHat | tigervnc-0:1.12.0-6.el8_6.17 | * |
| Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On | RedHat | tigervnc-0:1.12.0-6.el8_6.17 | * |
| Red Hat Enterprise Linux 8.6 Telecommunications Update Service | RedHat | xorg-x11-server-Xwayland-0:21.1.3-2.el8_6.6 | * |
| Red Hat Enterprise Linux 8.6 Telecommunications Update Service | RedHat | xorg-x11-server-0:1.20.11-7.el8_6 | * |
| Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions | RedHat | xorg-x11-server-Xwayland-0:21.1.3-2.el8_6.6 | * |
| Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions | RedHat | xorg-x11-server-0:1.20.11-7.el8_6 | * |
| Red Hat Enterprise Linux 8.8 Telecommunications Update Service | RedHat | xorg-x11-server-Xwayland-0:21.1.3-13.el8_8 | * |
| Red Hat Enterprise Linux 8.8 Telecommunications Update Service | RedHat | xorg-x11-server-0:1.20.11-18.el8_8 | * |
| Red Hat Enterprise Linux 8.8 Telecommunications Update Service | RedHat | tigervnc-0:1.12.0-15.el8_8.17 | * |
| Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions | RedHat | xorg-x11-server-Xwayland-0:21.1.3-13.el8_8 | * |
| Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions | RedHat | xorg-x11-server-0:1.20.11-18.el8_8 | * |
| Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions | RedHat | tigervnc-0:1.12.0-15.el8_8.17 | * |
| Red Hat Enterprise Linux 9 | RedHat | tigervnc-0:1.15.0-6.el9_7.1 | * |
| Red Hat Enterprise Linux 9 | RedHat | xorg-x11-server-Xwayland-0:23.2.7-6.el9_7 | * |
| Red Hat Enterprise Linux 9 | RedHat | xorg-x11-server-0:1.20.11-33.el9_7 | * |
| Red Hat Enterprise Linux 9 | RedHat | tigervnc-0:1.15.0-7.el9_8.1 | * |
| Red Hat Enterprise Linux 9 | RedHat | xorg-x11-server-0:1.20.11-34.el9_8 | * |
| Red Hat Enterprise Linux 9 | RedHat | xorg-x11-server-Xwayland-0:24.1.9-4.el9_8 | * |
| Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | RedHat | xorg-x11-server-Xwayland-0:21.1.3-5.el9_0 | * |
| Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | RedHat | xorg-x11-server-0:1.20.11-13.el9_0 | * |
| Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | RedHat | tigervnc-0:1.11.0-22.el9_0.17 | * |
| Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | RedHat | xorg-x11-server-Xwayland-0:21.1.3-10.el9_2 | * |
| Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | RedHat | xorg-x11-server-0:1.20.11-20.el9_2 | * |
| Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | RedHat | tigervnc-0:1.12.0-14.el9_2.14 | * |
| Red Hat Enterprise Linux 9.4 Extended Update Support | RedHat | xorg-x11-server-0:1.20.11-28.el9_4 | * |
| Red Hat Enterprise Linux 9.4 Extended Update Support | RedHat | xorg-x11-server-Xwayland-0:22.1.9-8.el9_4 | * |
| Red Hat Enterprise Linux 9.4 Extended Update Support | RedHat | tigervnc-0:1.13.1-8.el9_4.9 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | xorg-x11-server-0:1.20.11-33.el9_6 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | xorg-x11-server-Xwayland-0:23.2.7-6.el9_6 | * |
| Red Hat Enterprise Linux 9.6 Extended Update Support | RedHat | tigervnc-0:1.14.1-10.el9_6 | * |
| Xorg-server | Ubuntu | esm-infra/xenial | * |
| Xorg-server | Ubuntu | upstream | * |
| Xorg-server-hwe-16.04 | Ubuntu | esm-infra/xenial | * |
| Xwayland | Ubuntu | upstream | * |