REDHAT-BUG-2402660: Integer Overflow
Integer overflow vulnerability in the XkbSetCompatMap() function of the X.Org X server and Xwayland. The XkbCompatMap structure uses unsigned short values for some fields but fails to verify that input sums do not exceed the valid range. Crafted XkbSetCompatMap requests can trigger arithmetic overflow, potentially corrupting memory and causing the X server to crash.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2402660?
The severity of REDHAT-BUG-2402660 is classified as critical due to the potential for remote code execution.
How do I fix REDHAT-BUG-2402660?
To fix REDHAT-BUG-2402660, ensure you apply the recommended patches or updates provided by your distribution.
What software is affected by REDHAT-BUG-2402660?
REDHAT-BUG-2402660 affects the X.Org X server and Xwayland.
What is the cause of the vulnerability identified as REDHAT-BUG-2402660?
The cause of the vulnerability in REDHAT-BUG-2402660 is an integer overflow in the XkbSetCompatMap() function.
What types of attacks can exploit REDHAT-BUG-2402660?
Exploitation of REDHAT-BUG-2402660 can lead to denial of service or arbitrary code execution.