CVE-2019-14822
Summary
| CVE | CVE-2019-14822 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-11-25 12:15:00 UTC |
| Updated | 2022-06-07 18:41:00 UTC |
| Description | A flaw was discovered in ibus in versions before 1.5.22 that allows any unprivileged user to monitor and send method calls to the ibus bus of another user due to a misconfiguration in the DBus server setup. A local attacker may use this flaw to intercept all keystrokes of a victim user who is using the graphical interface, change the input method engine, or modify other input related configurations of the victim user. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| 1717958 – (CVE-2019-14822) CVE-2019-14822 ibus: missing authorization allows local attacker to access the input bus of another user |
CONFIRM |
bugzilla.redhat.com |
Issue Tracking, Patch, Third Party Advisory |
| USN-4134-3: IBus vulnerability | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
|
| Oracle Critical Patch Update Advisory - April 2022 |
MISC |
www.oracle.com |
|
| 1717958 – (CVE-2019-14822) CVE-2019-14822 ibus: missing authorization allows local attacker to access the input bus of another user |
MISC |
bugzilla.redhat.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 296061 Oracle Solaris 11.4 Support Repository Update (SRU) 42.113.1 Missing (CPUJAN2022)
- 377343 Alibaba Cloud Linux Security Update for ibus and glib2 (ALINUX3-SA-2022:0060)
- 377507 Alibaba Cloud Linux Security Update for glib2 and ibus (ALINUX2-SA-2020:0146)
- 670183 EulerOS Security Update for ibus (EulerOS-SA-2021-1681)
- 670278 EulerOS Security Update for ibus (EulerOS-SA-2021-1799)
- 670625 EulerOS Security Update for ibus (EulerOS-SA-2021-2383)
- 940151 AlmaLinux Security Update for ibus and glib2 (ALSA-2020:1880)