CVE-2022-3550: X.org Server xkb.c _GetCountedString buffer overflow
A vulnerability classified as critical was found in X.org Server. Affected by this vulnerability is the function GetCountedString of the file xkb/xkb.c. The manipulation leads to buffer overflow. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-211051.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2022-3550?
The severity of CVE-2022-3550 is high, with a severity value of 8.8.
Which software versions are affected by CVE-2022-3550?
The affected software versions include X.org Server 2:1.20.4-1+deb10u9, 2:1.20.11-1+deb11u6, 2:21.1.7-3, and 2:21.1.8-1.
How can I fix CVE-2022-3550?
To fix CVE-2022-3550, it is recommended to apply the available patch for the X.org Server.
Where can I find more information about CVE-2022-3550?
You can find more information about CVE-2022-3550 on the following references: https://vuldb.com/?id.211051, https://cgit.freedesktop.org/xorg/xserver/commit/?id=11beef0b7f1ed290348e45618e5fa0d2bffcb72e, and https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=2140699.
What is the Common Weakness Enumeration (CWE) associated with CVE-2022-3550?
The Common Weakness Enumeration (CWE) associated with CVE-2022-3550 is CWE-119 and CWE-120.