Unchecked NULL pointer usage when parsing invalid atoms in ExprResolveLhs in xkbcomp/expr.c in xkbcommon before 0.8.2 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file, because lookup failures are mishandled.
[
{
"id": "CVE-2018-15859-2f44810f",
"digest": {
"function_hash": "43341503883219008790151130644987806371",
"length": 787.0
},
"signature_version": "v1",
"signature_type": "Function",
"target": {
"function": "ExprResolveLhs",
"file": "src/xkbcomp/expr.c"
},
"deprecated": false,
"source": "https://github.com/xkbcommon/libxkbcommon/commit/bb4909d2d8fa6b08155e449986a478101e2b2634"
},
{
"id": "CVE-2018-15859-f8fabfcf",
"digest": {
"line_hashes": [
"303975513241189271169043459495378179633",
"57047408033659113269292648207627675083",
"137636030080933030529451911402325404101",
"198377673848364634708357946280879810418",
"39654489695989217364076106125130784526",
"1622333952790506483098321717139240657",
"217681883777450005324145042871811942865",
"134258757998295990486982799137584684993"
],
"threshold": 0.9
},
"signature_version": "v1",
"signature_type": "Line",
"target": {
"file": "src/xkbcomp/expr.c"
},
"deprecated": false,
"source": "https://github.com/xkbcommon/libxkbcommon/commit/bb4909d2d8fa6b08155e449986a478101e2b2634"
}
]