Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-2319

Опубликовано: 13 июл. 2022
Источник: redhat
CVSS3: 7.6

Описание

A flaw was found in the Xorg-x11-server. An out-of-bounds access issue can occur in the ProcXkbSetGeometry function due to improper validation of the request length.

Отчет

Xorg server does not run with root privileges in Red Hat Enterprise Linux 8, therefore this flaw has been rated as having Moderate impact.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6xorg-x11-serverOut of support scope
Red Hat Enterprise Linux 7xorg-x11-serverFixedRHSA-2022:590504.08.2022
Red Hat Enterprise Linux 8xorg-x11-serverFixedRHSA-2022:758308.11.2022
Red Hat Enterprise Linux 8xorg-x11-server-XwaylandFixedRHSA-2022:758308.11.2022
Red Hat Enterprise Linux 9xorg-x11-serverFixedRHSA-2022:822115.11.2022
Red Hat Enterprise Linux 9xorg-x11-server-XwaylandFixedRHSA-2022:822215.11.2022

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-1320
https://bugzilla.redhat.com/show_bug.cgi?id=2106671xorg-x11-server: X.Org Server ProcXkbSetGeometry out-of-bounds access

7.6 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 3 года назад

A flaw was found in the Xorg-x11-server. An out-of-bounds access issue can occur in the ProcXkbSetGeometry function due to improper validation of the request length.

CVSS3: 7.8
nvd
почти 3 года назад

A flaw was found in the Xorg-x11-server. An out-of-bounds access issue can occur in the ProcXkbSetGeometry function due to improper validation of the request length.

CVSS3: 7.8
debian
почти 3 года назад

A flaw was found in the Xorg-x11-server. An out-of-bounds access issue ...

CVSS3: 7.8
github
почти 3 года назад

A flaw was found in the Xorg-x11-server. An out-of-bounds access issue can occur in the ProcXkbSetGeometry function due to improper validation of the request length.

CVSS3: 7.6
fstec
почти 3 года назад

Уязвимость обработчика вызовов ProcXkbSetGeometry сервера X.Org Server, позволяющая нарушителю выполнить произвольный код или повысить свои привилегии

7.6 High

CVSS3