ZeroHour

CVE-2018-15853

CVSS 3.0
5.5 medium
EPSS
<1%p44
Published
()
Modified
Description

Endless recursion exists in xkbcomp/expr.c in xkbcommon and libxkbcommon before 0.8.1, which could be used by local attackers to crash xkbcommon users by supplying a crafted keymap file that triggers boolean negation.

Vendors
xkbcommoncanonical
Products
libxkbcommon, xkbcommon, ubuntu linux
Weakness
CWE-400
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.