PT-2018-13243 · Xkbcommon+7 · Libxkbcommon+8

Published

2018-08-09

·

Updated

2026-02-24

·

CVE-2018-15853

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions xkbcommon versions prior to 0.8.1 libxkbcommon versions prior to 0.8.1
Description A local attacker could crash xkbcommon users by supplying a crafted keymap file that triggers boolean negation, due to an endless recursion in xkbcomp/expr.c.
Recommendations For xkbcommon versions prior to 0.8.1, update to version 0.8.1 or later. For libxkbcommon versions prior to 0.8.1, update to version 0.8.1 or later.

Fix

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-2114
CESA-2019_2079
CVE-2018-15853
ECHO-B6B7-34C7-3F12
MGASA-2018-0369
MGASA-2025-0321
OPENSUSE-SU-2018_3802-1
OPENSUSE-SU-2024:11014-1
OPENSUSE-SU-2025:15815-1
OPENSUSE-SU-2026:20123-1
RHSA-2019:2079
RHSA-2019_2079
SUSE-SU-2018:3685-1
SUSE-SU-2018_3685-1
SUSE-SU-2024:0037-1
SUSE-SU-2024_0037-1
SUSE-SU-2025:4407-1
SUSE-SU-2025:4426-1
SUSE-SU-2026:20186-1
USN-3786-1
USN-3786-2

Affected Products

Alt Linux
Centos
Debian
Red Hat
Red Os
Suse
Ubuntu
Libxkbcommon
Xkbcommon