Red Hat Bugzilla – Bug 1623024
CVE-2018-15858 libxkbcommon: NULL pointer dereference when handling invalid aliases in CopyKeyAliasesToKeymap resulting in a crash
Last modified: 2018-10-26 06:24:40 EDT
Unchecked NULL pointer usage when handling invalid aliases in CopyKeyAliasesToKeymap in xkbcomp/keycodes.c in xkbcommon before 0.8.1 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file. Upstream patch: https://github.com/xkbcommon/libxkbcommon/commit/badb428e63387140720f22486b3acbd3d738859f References: https://lists.freedesktop.org/archives/wayland-devel/2018-August/039232.html
I cannot reproduce this NULL dereference, closing it as NOTABUG.