First published: Mon Oct 08 2018(Updated: )
It was discovered that libxkbcommon incorrectly handled certain files. An attacker could possibly use this issue to cause a denial of service. (CVE-2018-15853, CVE-2018-15854, CVE-2018-15855, CVE-2018-15856, CVE-2018-15857, CVE-2018-15858, CVE-2018-15859, CVE-2018-15861, CVE-2018-15862, CVE-2018-15863, CVE-2018-15864)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libxkbcommon-x11-0 | <0.5.0-1ubuntu2.1 | 0.5.0-1ubuntu2.1 |
Ubuntu OpenSSH Client | =16.04 | |
All of | ||
ubuntu/libxkbcommon0 | <0.5.0-1ubuntu2.1 | 0.5.0-1ubuntu2.1 |
Ubuntu OpenSSH Client | =16.04 | |
All of | ||
ubuntu/libxkbcommon-x11-0 | <0.4.1-0ubuntu1.1 | 0.4.1-0ubuntu1.1 |
Ubuntu OpenSSH Client | =14.04 | |
All of | ||
ubuntu/libxkbcommon0 | <0.4.1-0ubuntu1.1 | 0.4.1-0ubuntu1.1 |
Ubuntu OpenSSH Client | =14.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Contains the following vulnerabilities)
The severity of USN-3786-1 is classified as a denial of service vulnerability.
To fix USN-3786-1, you need to update the libxkbcommon package to the latest version specified in the advisory.
USN-3786-1 affects Ubuntu 16.04 and Ubuntu 14.04 installations with specific versions of libxkbcommon.
Yes, an attacker could exploit USN-3786-1 to cause a denial of service from a remote location.
USN-3786-1 identifies libxkbcommon0 and libxkbcommon-x11-0 as the vulnerable packages.