Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-15856

Опубликовано: 25 авг. 2018
Источник: debian
EPSS Низкий

Описание

An infinite loop when reaching EOL unexpectedly in compose/parser.c (aka the keymap parser) in xkbcommon before 0.8.1 could be used by local attackers to cause a denial of service during parsing of crafted keymap files.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libxkbcommonfixed0.8.2-1package
libxkbcommonignoredstretchpackage
libxkbcommonno-dsajessiepackage

Примечания

  • https://github.com/xkbcommon/libxkbcommon/commit/842e4351c2c97de6051cab6ce36b4a81e709a0e1

  • https://lists.freedesktop.org/archives/wayland-devel/2018-August/039232.html

EPSS

Процентиль: 13%
0.00044
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 7 лет назад

An infinite loop when reaching EOL unexpectedly in compose/parser.c (aka the keymap parser) in xkbcommon before 0.8.1 could be used by local attackers to cause a denial of service during parsing of crafted keymap files.

CVSS3: 3.3
redhat
почти 8 лет назад

An infinite loop when reaching EOL unexpectedly in compose/parser.c (aka the keymap parser) in xkbcommon before 0.8.1 could be used by local attackers to cause a denial of service during parsing of crafted keymap files.

CVSS3: 5.5
nvd
больше 7 лет назад

An infinite loop when reaching EOL unexpectedly in compose/parser.c (aka the keymap parser) in xkbcommon before 0.8.1 could be used by local attackers to cause a denial of service during parsing of crafted keymap files.

CVSS3: 5.5
github
больше 3 лет назад

An infinite loop when reaching EOL unexpectedly in compose/parser.c (aka the keymap parser) in xkbcommon before 0.8.1 could be used by local attackers to cause a denial of service during parsing of crafted keymap files.

suse-cvrf
около 7 лет назад

Security update for libxkbcommon

EPSS

Процентиль: 13%
0.00044
Низкий