Wind River Support Network

HomeDefectsLIN10-4598
Fixed

LIN10-4598 : Security Advisory - libxkbcommon - CVE-2018-15859

Created: Aug 31, 2018    Updated: Dec 3, 2018
Resolved Date: Sep 11, 2018
Found In Version: 10.17.41.1
Fix Version: 10.17.41.12
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Userspace

Description

Unchecked NULL pointer usage when parsing invalid atoms in ExprResolveLhs in xkbcomp/expr.c in xkbcommon before 0.8.2 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file, because lookup failures are mishandled.

https://nvd.nist.gov/vuln/detail/CVE-2018-15859

Other Downloads


CVEs


Live chat
Online