CVE-2019-14822

Description

A flaw was discovered in ibus in versions before 1.5.22 that allows any unprivileged user to monitor and send method calls to the ibus bus of another user due to a misconfiguration in the DBus server setup. A local attacker may use this flaw to intercept all keystrokes of a victim user who is using the graphical interface, change the input method engine, or modify other input related configurations of the victim user.

Risk Information

Base Score
7.1
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
EPSS Score
Exploitation Probability
0.165

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in IBM Security Guardium 10.5Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 10.6Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.1Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.2Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.3Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.0Windows
Intelligent Input Bus - core (USN-4134-1) ibus_1.5.11-1ubuntu2.2_i386.debLinux
Intelligent Input Bus - core (USN-4134-1) ibus_1.5.11-1ubuntu2.2_amd64.debLinux
Intelligent Input Bus - core (USN-4134-1) ibus_1.5.17-3ubuntu5.1_i386.debLinux
Intelligent Input Bus - core (USN-4134-1) ibus_1.5.17-3ubuntu5.1_amd64.debLinux
Intelligent Input Bus - core (USN-4134-1) ibus_1.5.19-1ubuntu2.1_i386.debLinux
Intelligent Input Bus - core (USN-4134-1) ibus_1.5.19-1ubuntu2.1_amd64.debLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) ibus-1.5.13-15.11.2.x86_64.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) ibus-debuginfo-1.5.13-15.11.2.x86_64.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) ibus-debugsource-1.5.13-15.11.2.x86_64.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) ibus-gtk-1.5.13-15.11.2.x86_64.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) ibus-gtk-debuginfo-1.5.13-15.11.2.x86_64.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) ibus-gtk3-1.5.13-15.11.2.x86_64.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) ibus-gtk3-32bit-1.5.13-15.11.2.x86_64.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) ibus-gtk3-debuginfo-1.5.13-15.11.2.x86_64.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) ibus-gtk3-debuginfo-32bit-1.5.13-15.11.2.x86_64.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) ibus-lang-1.5.13-15.11.2.noarch.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) libibus-1_0-5-1.5.13-15.11.2.x86_64.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) libibus-1_0-5-32bit-1.5.13-15.11.2.x86_64.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) libibus-1_0-5-debuginfo-1.5.13-15.11.2.x86_64.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) libibus-1_0-5-debuginfo-32bit-1.5.13-15.11.2.x86_64.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) python-ibus-1.5.13-15.11.2.x86_64.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Desktop 12-SP4 ) typelib-1_0-IBus-1_0-1.5.13-15.11.2.x86_64.rpmLinux
ibus security update(DSA-4525-1) ibus_1.5.14-3+deb9u2_i386.debLinux
ibus security update(DSA-4525-1) ibus_1.5.14-3+deb9u2_amd64.debLinux
ibus security update(DSA-4525-1) ibus_1.5.19-4+deb10u1_amd64.debLinux
Intelligent Input Bus - core (USN-4134-3) ibus_1.5.11-1ubuntu2.4_i386.debLinux
Intelligent Input Bus - core (USN-4134-3) ibus_1.5.11-1ubuntu2.4_amd64.debLinux
Intelligent Input Bus - core (USN-4134-3) ibus_1.5.17-3ubuntu5.3_i386.debLinux
Intelligent Input Bus - core (USN-4134-3) ibus_1.5.17-3ubuntu5.3_amd64.debLinux
Intelligent Input Bus - core (USN-4134-3) ibus_1.5.21-1~exp2ubuntu2.1_i386.debLinux
Intelligent Input Bus - core (USN-4134-3) ibus_1.5.21-1~exp2ubuntu2.1_amd64.debLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update glib2-2.56.4-8.el8.i686.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update glib2-2.56.4-8.el8.x86_64.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update glib2-debugsource-2.56.4-8.el8.i686.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update glib2-debugsource-2.56.4-8.el8.x86_64.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update glib2-devel-2.56.4-8.el8.i686.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update glib2-devel-2.56.4-8.el8.x86_64.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update glib2-fam-2.56.4-8.el8.x86_64.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update glib2-tests-2.56.4-8.el8.x86_64.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update ibus-1.5.19-11.el8.x86_64.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update ibus-debugsource-1.5.19-11.el8.i686.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update ibus-debugsource-1.5.19-11.el8.x86_64.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update ibus-gtk2-1.5.19-11.el8.i686.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update ibus-gtk2-1.5.19-11.el8.x86_64.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update ibus-gtk3-1.5.19-11.el8.x86_64.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update ibus-libs-1.5.19-11.el8.i686.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update ibus-libs-1.5.19-11.el8.x86_64.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update ibus-setup-1.5.19-11.el8.noarch.rpmLinux
(RHSA-2020:1880) ibus and glib2 security and bug fix update ibus-wayland-1.5.19-11.el8.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-2.56.1-7.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-2.56.1-7.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-devel-2.56.1-7.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-devel-2.56.1-7.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-doc-2.56.1-7.el7.noarch.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-fam-2.56.1-7.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-static-2.56.1-7.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-static-2.56.1-7.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-tests-2.56.1-7.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-1.5.17-11.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-1.5.17-11.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-devel-1.5.17-11.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-devel-1.5.17-11.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-devel-docs-1.5.17-11.el7.noarch.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-gtk2-1.5.17-11.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-gtk2-1.5.17-11.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-gtk3-1.5.17-11.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-gtk3-1.5.17-11.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-libs-1.5.17-11.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-libs-1.5.17-11.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-pygtk2-1.5.17-11.el7.noarch.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-setup-1.5.17-11.el7.noarch.rpmLinux
(CESA-2020:1880) ibus and glib2 security and bug fix update glib2-2.56.4-8.el8.i686.rpmLinux
(CESA-2020:1880) ibus and glib2 security and bug fix update glib2-2.56.4-8.el8.x86_64.rpmLinux
(CESA-2020:1880) ibus and glib2 security and bug fix update glib2-devel-2.56.4-8.el8.i686.rpmLinux
(CESA-2020:1880) ibus and glib2 security and bug fix update glib2-devel-2.56.4-8.el8.x86_64.rpmLinux
(CESA-2020:1880) ibus and glib2 security and bug fix update glib2-fam-2.56.4-8.el8.x86_64.rpmLinux
(CESA-2020:1880) ibus and glib2 security and bug fix update glib2-tests-2.56.4-8.el8.x86_64.rpmLinux
(CESA-2020:1880) ibus and glib2 security and bug fix update ibus-1.5.19-11.el8.x86_64.rpmLinux
(CESA-2020:1880) ibus and glib2 security and bug fix update ibus-gtk2-1.5.19-11.el8.i686.rpmLinux
(CESA-2020:1880) ibus and glib2 security and bug fix update ibus-gtk2-1.5.19-11.el8.x86_64.rpmLinux
(CESA-2020:1880) ibus and glib2 security and bug fix update ibus-gtk3-1.5.19-11.el8.x86_64.rpmLinux
(CESA-2020:1880) ibus and glib2 security and bug fix update ibus-libs-1.5.19-11.el8.i686.rpmLinux
(CESA-2020:1880) ibus and glib2 security and bug fix update ibus-libs-1.5.19-11.el8.x86_64.rpmLinux
(CESA-2020:1880) ibus and glib2 security and bug fix update ibus-setup-1.5.19-11.el8.noarch.rpmLinux
(CESA-2020:1880) ibus and glib2 security and bug fix update ibus-wayland-1.5.19-11.el8.x86_64.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Server 12-SP5) ibus-1.5.13-15.11.2.x86_64_12_SP5.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Server 12-SP5) ibus-debuginfo-1.5.13-15.11.2.x86_64_12_SP5.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Server 12-SP5) ibus-debugsource-1.5.13-15.11.2.x86_64_12_SP5.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Server 12-SP5) ibus-gtk-1.5.13-15.11.2.x86_64_12_SP5.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Server 12-SP5) ibus-gtk-debuginfo-1.5.13-15.11.2.x86_64_12_SP5.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Server 12-SP5) ibus-gtk3-1.5.13-15.11.2.x86_64_12_SP5.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Server 12-SP5) ibus-gtk3-debuginfo-1.5.13-15.11.2.x86_64_12_SP5.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Server 12-SP5) ibus-lang-1.5.13-15.11.2.noarch_12_SP5.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Server 12-SP5) libibus-1_0-5-1.5.13-15.11.2.x86_64_12_SP5.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Server 12-SP5) libibus-1_0-5-debuginfo-1.5.13-15.11.2.x86_64_12_SP5.rpmLinux
SUSE-SU-2019:2389-1(SUSE Linux Enterprise Server 12-SP5) typelib-1_0-IBus-1_0-1.5.13-15.11.2.x86_64_12_SP5.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update glib2-debuginfo-2.56.4-8.el8.i686.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update glib2-debuginfo-2.56.4-8.el8.x86_64.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update glib2-devel-debuginfo-2.56.4-8.el8.i686.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update glib2-devel-debuginfo-2.56.4-8.el8.x86_64.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update glib2-fam-debuginfo-2.56.4-8.el8.i686.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update glib2-fam-debuginfo-2.56.4-8.el8.x86_64.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update glib2-tests-debuginfo-2.56.4-8.el8.i686.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update glib2-tests-debuginfo-2.56.4-8.el8.x86_64.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update ibus-debuginfo-1.5.19-11.el8.i686.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update ibus-debuginfo-1.5.19-11.el8.x86_64.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update ibus-gtk2-debuginfo-1.5.19-11.el8.i686.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update ibus-gtk2-debuginfo-1.5.19-11.el8.x86_64.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update ibus-gtk3-debuginfo-1.5.19-11.el8.i686.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update ibus-gtk3-debuginfo-1.5.19-11.el8.x86_64.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update ibus-libs-debuginfo-1.5.19-11.el8.i686.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update ibus-libs-debuginfo-1.5.19-11.el8.x86_64.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update ibus-tests-debuginfo-1.5.19-11.el8.i686.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update ibus-tests-debuginfo-1.5.19-11.el8.x86_64.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update ibus-wayland-debuginfo-1.5.19-11.el8.i686.rpmLinux
(RHSA-2020:1880)Moderate: and glib2 security and bug fix update ibus-wayland-debuginfo-1.5.19-11.el8.x86_64.rpmLinux
(RHSA-2020:3978)Moderate: and ibus security and bug fix update glib2-debuginfo-2.56.1-7.el7.i686.rpmLinux
(RHSA-2020:3978)Moderate: and ibus security and bug fix update glib2-debuginfo-2.56.1-7.el7.x86_64.rpmLinux
(RHSA-2020:3978)Moderate: and ibus security and bug fix update ibus-debuginfo-1.5.17-11.el7.i686.rpmLinux
(RHSA-2020:3978)Moderate: and ibus security and bug fix update ibus-debuginfo-1.5.17-11.el7.x86_64.rpmLinux
Glib2 update (ELSA-2020-3978) glib2-2.56.1-7.el7.i686.rpmLinux
Glib2 update (ELSA-2020-3978) glib2-2.56.1-7.el7.x86_64.rpmLinux
Glib2-devel update (ELSA-2020-3978) glib2-devel-2.56.1-7.el7.i686.rpmLinux
Glib2-devel update (ELSA-2020-3978) glib2-devel-2.56.1-7.el7.x86_64.rpmLinux
Ibus update (ELSA-2020-3978) ibus-1.5.17-11.el7.i686.rpmLinux
Ibus update (ELSA-2020-3978) ibus-1.5.17-11.el7.x86_64.rpmLinux
Ibus-gtk2 update (ELSA-2020-3978) ibus-gtk2-1.5.17-11.el7.i686.rpmLinux
Ibus-gtk2 update (ELSA-2020-3978) ibus-gtk2-1.5.17-11.el7.x86_64.rpmLinux
Ibus-gtk3 update (ELSA-2020-3978) ibus-gtk3-1.5.17-11.el7.i686.rpmLinux
Ibus-gtk3 update (ELSA-2020-3978) ibus-gtk3-1.5.17-11.el7.x86_64.rpmLinux
Ibus-libs update (ELSA-2020-3978) ibus-libs-1.5.17-11.el7.i686.rpmLinux
Ibus-libs update (ELSA-2020-3978) ibus-libs-1.5.17-11.el7.x86_64.rpmLinux
Ibus-setup update (ELSA-2020-3978) ibus-setup-1.5.17-11.el7.noarch.rpmLinux
ibus Security Update (ALAS-2020-1555) ibus-1.5.17-11.amzn2.i686.rpmLinux
ibus Security Update (ALAS-2020-1555) ibus-1.5.17-11.amzn2.x86_64.rpmLinux
ibus Security Update (ALAS-2020-1555) ibus-gtk2-1.5.17-11.amzn2.i686.rpmLinux
ibus Security Update (ALAS-2020-1555) ibus-gtk2-1.5.17-11.amzn2.x86_64.rpmLinux
ibus Security Update (ALAS-2020-1555) ibus-gtk3-1.5.17-11.amzn2.i686.rpmLinux
ibus Security Update (ALAS-2020-1555) ibus-gtk3-1.5.17-11.amzn2.x86_64.rpmLinux
ibus Security Update (ALAS-2020-1555) ibus-libs-1.5.17-11.amzn2.i686.rpmLinux
ibus Security Update (ALAS-2020-1555) ibus-libs-1.5.17-11.amzn2.x86_64.rpmLinux
ibus Security Update (ALAS-2020-1555) ibus-devel-1.5.17-11.amzn2.x86_64.rpmLinux
ibus Security Update (ALAS-2020-1555) ibus-setup-1.5.17-11.amzn2.noarch.rpmLinux
ibus Security Update (ALAS-2020-1555) ibus-pygtk2-1.5.17-11.amzn2.noarch.rpmLinux
ibus Security Update (ALAS-2020-1555) ibus-devel-docs-1.5.17-11.amzn2.noarch.rpmLinux
Missing Authorization Vulnerability (CVE-2019-14822)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234