Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-3553

Опубликовано: 17 окт. 2022
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

A vulnerability, which was classified as problematic, was found in X.org Server. This affects an unknown part of the file hw/xquartz/X11Controller.m of the component xquartz. The manipulation leads to denial of service. It is recommended to apply a patch to fix this issue. The identifier VDB-211053 was assigned to this vulnerability.

Отчет

This vulnerability is present in Xquartz, the X server for MacOS. The xorg-x11-server package shipped with Red Hat Enterprise Linux is not built with Xquartz support, therefore Red Hat Enterprise Linux is not affected by this issue.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6xorg-x11-serverOut of support scope
Red Hat Enterprise Linux 7xorg-x11-serverOut of support scope
Red Hat Enterprise Linux 8xorg-x11-serverNot affected
Red Hat Enterprise Linux 8xorg-x11-server-XwaylandNot affected
Red Hat Enterprise Linux 9xorg-x11-serverNot affected
Red Hat Enterprise Linux 9xorg-x11-server-XwaylandNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-404
https://bugzilla.redhat.com/show_bug.cgi?id=2140706xorg-x11-server: DoS in xquartz when editing the Application menu due to mutaing immutable arrays

EPSS

Процентиль: 29%
0.00104
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 3.5
ubuntu
больше 3 лет назад

A vulnerability, which was classified as problematic, was found in X.org Server. This affects an unknown part of the file hw/xquartz/X11Controller.m of the component xquartz. The manipulation leads to denial of service. It is recommended to apply a patch to fix this issue. The identifier VDB-211053 was assigned to this vulnerability.

CVSS3: 3.5
nvd
больше 3 лет назад

A vulnerability, which was classified as problematic, was found in X.org Server. This affects an unknown part of the file hw/xquartz/X11Controller.m of the component xquartz. The manipulation leads to denial of service. It is recommended to apply a patch to fix this issue. The identifier VDB-211053 was assigned to this vulnerability.

CVSS3: 3.5
debian
больше 3 лет назад

A vulnerability, which was classified as problematic, was found in X.o ...

CVSS3: 7.5
github
больше 3 лет назад

A vulnerability, which was classified as problematic, was found in X.org Server. This affects an unknown part of the file hw/xquartz/X11Controller.m of the component xquartz. The manipulation leads to denial of service. It is recommended to apply a patch to fix this issue. The identifier VDB-211053 was assigned to this vulnerability.

EPSS

Процентиль: 29%
0.00104
Низкий

6.5 Medium

CVSS3