CVE-2022-2320
01.09.2022, 21:15
A flaw was found in the Xorg-x11-server. The specific flaw exists within the handling of ProcXkbSetDeviceInfo requests. The issue results from the lack of proper validation of user-supplied data, which can result in a memory access past the end of an allocated buffer. This flaw allows an attacker to escalate privileges and execute arbitrary code in the context of root.Enginsight
Vendor | Product | Version |
---|---|---|
x.org | xorg-server | 21.1.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
xorg |
| ||||||||||||||||||||
xorg-hwe-16.04 |
| ||||||||||||||||||||
xorg-hwe-18.04 |
| ||||||||||||||||||||
xorg-server |
| ||||||||||||||||||||
xorg-server-hwe-16.04 |
| ||||||||||||||||||||
xorg-server-hwe-18.04 |
| ||||||||||||||||||||
xorg-server-lts-utopic |
| ||||||||||||||||||||
xorg-server-lts-vivid |
| ||||||||||||||||||||
xorg-server-lts-wily |
| ||||||||||||||||||||
xorg-server-lts-xenial |
| ||||||||||||||||||||
xwayland |
|
Common Weakness Enumeration
References