A vulnerability, which was classified as problematic, has been found in X.org Server. Affected by this issue is the function ProcXkbGetKbdByName of the file xkb/xkb.c. The manipulation leads to memory leak. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-211052. Reference: https://vuldb.com/?id.211052 Upstream patch: https://cgit.freedesktop.org/xorg/xserver/commit/?id=18f91b950e22c2a342a4fbc55e9ddf7534a707d2
Created xorg-x11-server tracking bugs for this issue: Affects: fedora-all [bug 2140703] Created xorg-x11-server-Xwayland tracking bugs for this issue: Affects: fedora-all [bug 2140702]
It's a memory leak, not a security issue. Some data is not freed when an error is encountered, meaning that in the common case, there is no leak.
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2022:8491 https://access.redhat.com/errata/RHSA-2022:8491
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2022-3551
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2023:2248 https://access.redhat.com/errata/RHSA-2023:2248
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2023:2249 https://access.redhat.com/errata/RHSA-2023:2249
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2023:2805 https://access.redhat.com/errata/RHSA-2023:2805
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2023:2806 https://access.redhat.com/errata/RHSA-2023:2806