Back to search
CVE-2022-4283
Published: Dec 14, 2022
Modified: Apr 14, 2025
PUBLISHED
Description
A vulnerability was found in X.Org. This security flaw occurs because the XkbCopyNames function left a dangling pointer to freed memory, resulting in out-of-bounds memory access on subsequent XkbGetKbdByName requests.. This issue can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for ssh X forwarding sessions.
| Vendor | Product | Versions |
|---|---|---|
n/a | xorg-x11-server | affected xorg-x11-server-1.20.4 |
References
FEDORA-2022-c3a65f7c65
vendor-advisory
FEDORA-2022-721a78b7e5
vendor-advisory
DSA-5304
vendor-advisory
FEDORA-2022-dd3eb7e0a8
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now