CVE-2022-46342

Name
CVE-2022-46342
Description
A vulnerability was found in X.Org. This security flaw occurs because the handler for the XvdiSelectVideoNotify request may write to memory after it has been freed. This issue can lead to local privileges elevation on systems where the X se
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
MISC https://bugzilla.redhat.com/show_bug.cgi?id=2151757
MISC https://access.redhat.com/security/cve/CVE-2022-46342
FEDORA https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DXDF2O5PPLE3SVAJJYUOSAD5QZ4TWQ2G/
FEDORA https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5NELB7YDWRABYYBG4UPTHRBDTKJRV5M2/
DEBIAN https://www.debian.org/security/2022/dsa-5304
Mailing List https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Z67QC4C3I2FI2WRFIUPEHKC36J362MLA/
Mailing List https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5NELB7YDWRABYYBG4UPTHRBDTKJRV5M2/
Mailing List https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DXDF2O5PPLE3SVAJJYUOSAD5QZ4TWQ2G/
MISC https://security.gentoo.org/glsa/202305-30

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:x.org:x_server:1.20.4:*:*:*:*:*:*:* x_server == None == 1.20.4

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
xwayland edge-community 22.1.6-r0 psykose <alice@ayaya.dev> fixed
xwayland 3.22-community 22.1.6-r0 None fixed
xwayland 3.21-community 22.1.6-r0 None fixed
xwayland 3.20-community 22.1.6-r0 None fixed
xwayland 3.19-community 22.1.6-r0 None fixed
xwayland 3.18-community 22.1.6-r0 None fixed
xwayland 3.17-community 22.1.6-r0 psykose <alice@ayaya.dev> fixed
xorg-server edge-community 21.1.5-r0 Natanael Copa <ncopa@alpinelinux.org> fixed
xorg-server 3.22-community 21.1.5-r0 None fixed
xorg-server 3.21-community 21.1.5-r0 None fixed
xorg-server 3.20-community 21.1.5-r0 None fixed
xorg-server 3.19-community 21.1.5-r0 None fixed
xorg-server 3.18-community 21.1.5-r0 None fixed
xorg-server 3.17-community 21.1.5-r0 Natanael Copa <ncopa@alpinelinux.org> fixed