Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
xkbcommon vulnerabilities and exploits
(subscribe to this query)
2.1
CVSSv2
CVE-2018-15858
Unchecked NULL pointer usage when handling invalid aliases in CopyKeyAliasesToKeymap in xkbcomp/keycodes.c in xkbcommon prior to 0.8.1 could be used by local malicious users to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file.
Xkbcommon Xkbcommon
Xkbcommon Libxkbcommon
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 14.04
2.1
CVSSv2
CVE-2018-15853
Endless recursion exists in xkbcomp/expr.c in xkbcommon and libxkbcommon prior to 0.8.1, which could be used by local malicious users to crash xkbcommon users by supplying a crafted keymap file that triggers boolean negation.
Xkbcommon Xkbcommon
Xkbcommon Libxkbcommon
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 16.04
2.1
CVSSv2
CVE-2018-15854
Unchecked NULL pointer usage in xkbcommon prior to 0.8.1 could be used by local malicious users to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file, because geometry tokens were desupported incorrectly.
Xkbcommon Project Xkbcommon
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 18.04
2.1
CVSSv2
CVE-2018-15855
Unchecked NULL pointer usage in xkbcommon prior to 0.8.1 could be used by local malicious users to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file, because the XkbFile for an xkb_geometry section was mishandled.
Xkbcommon Project Xkbcommon
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 14.04
2.1
CVSSv2
CVE-2018-15856
An infinite loop when reaching EOL unexpectedly in compose/parser.c (aka the keymap parser) in xkbcommon prior to 0.8.1 could be used by local malicious users to cause a denial of service during parsing of crafted keymap files.
Xkbcommon Xkbcommon
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 16.04
4.6
CVSSv2
CVE-2018-15857
An invalid free in ExprAppendMultiKeysymList in xkbcomp/ast-build.c in xkbcommon prior to 0.8.1 could be used by local malicious users to crash xkbcommon keymap parsers or possibly have unspecified other impact by supplying a crafted keymap file.
Xkbcommon Xkbcommon
Xkbcommon Libxkbcommon
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 16.04
2.1
CVSSv2
CVE-2018-15859
Unchecked NULL pointer usage when parsing invalid atoms in ExprResolveLhs in xkbcomp/expr.c in xkbcommon prior to 0.8.2 could be used by local malicious users to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file, because lookup failures are ...
Xkbcommon Xkbcommon
Xkbcommon Libxkbcommon
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 14.04
2.1
CVSSv2
CVE-2018-15861
Unchecked NULL pointer usage in ExprResolveLhs in xkbcomp/expr.c in xkbcommon prior to 0.8.2 could be used by local malicious users to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file that triggers an xkb_intern_atom failure.
Xkbcommon Xkbcommon
Xkbcommon Libxkbcommon
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 16.04
2.1
CVSSv2
CVE-2018-15862
Unchecked NULL pointer usage in LookupModMask in xkbcomp/expr.c in xkbcommon prior to 0.8.2 could be used by local malicious users to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file with invalid virtual modifiers.
Xkbcommon Xkbcommon
Xkbcommon Libxkbcommon
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 18.04
2.1
CVSSv2
CVE-2018-15863
Unchecked NULL pointer usage in ResolveStateAndPredicate in xkbcomp/compat.c in xkbcommon prior to 0.8.2 could be used by local malicious users to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file with a no-op modmask expression.
Xkbcommon Xkbcommon
Xkbcommon Libxkbcommon
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 18.04
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-30924
CVE-2024-3400
overflow
CVE-2024-23528
CVE-2024-21338
CVE-2024-3818
CVE-2024-23535
NULL pointer dereference
elevation of privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »