REDHAT-BUG-783039: Low severity X.Org Foundation X Server vulnerability
It was found that XKB actions for debugging X.org clients were enabled by default. This could cause a screen locking application such as gnome-screensaver to be killed when those key combinations were triggered.
The debugging key actions were introduced in the following commit: http://cgit.freedesktop.org/xorg/xserver/commit/?id=7d2543a3cb3089241982ce4f8984fd723d5312a1
Reference: http://thread.gmane.org/gmane.comp.security.oss.general/6725
Mitigation: http://thread.gmane.org/gmane.comp.security.oss.general/6725/focus=6731
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-783039?
The severity of REDHAT-BUG-783039 is classified as a medium impact vulnerability due to the risk of unintended termination of screen locking applications.
How do I fix REDHAT-BUG-783039?
To fix REDHAT-BUG-783039, users should disable the debugging key actions in their X server configuration.
What software is affected by REDHAT-BUG-783039?
REDHAT-BUG-783039 affects the X.Org Foundation X Server software.
What are the consequences of REDHAT-BUG-783039?
The consequence of REDHAT-BUG-783039 is that it may cause screen locking applications like gnome-screensaver to be unintentionally killed.
Is there a workaround for REDHAT-BUG-783039?
A temporary workaround for REDHAT-BUG-783039 is to avoid using the debugging key combinations until a patch is applied.