A flaw was discovered in ibus in versions before 1.5.22 that allows any unprivileged user to monitor and send method calls to the ibus bus of another user due to a misconfiguration in the DBus server setup. A local attacker may use this flaw to intercept all keystrokes of a victim user who is using the graphical interface, change the input method engine, or modify other input related configurations of the victim user.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-14822.json"
[
{
"signature_type": "Line",
"signature_version": "v1",
"source": "https://github.com/pnggroup/libpng/commit/4b1b9ce0285b541f1af8a88a2496e06c5c7c25c7",
"digest": {
"line_hashes": [
"90761546293374244527845917547018530649",
"137417495245102076830839418912487002875",
"86992279080513503103041527767894422514",
"26202202500714731688447689440888618643",
"329693854444850826831444906273737298145",
"17011134855486730718262056536851411265",
"83512374228937042689883712080376059557",
"136955984917707785624811019298884841478",
"135789412668193218260238724448674301482",
"250271634670548667808231911998195485587",
"21548005462996977272692476291400760561",
"5721070315593613140786678524936315593",
"290847783886619613480341592952948273327",
"290075448502179123271977928512358801069",
"188659470340039086293285886598503408905",
"169386802321460230450472092086986617968",
"66334212622631860291524007319082683391"
],
"threshold": 0.9
},
"id": "CVE-2019-14822-08668ea7",
"deprecated": false,
"target": {
"file": "png.c"
}
},
{
"signature_type": "Line",
"signature_version": "v1",
"source": "https://github.com/pnggroup/libpng/commit/4b1b9ce0285b541f1af8a88a2496e06c5c7c25c7",
"digest": {
"line_hashes": [
"103641275533327891742404614660718038032",
"79756851402468988080339013805614573032"
],
"threshold": 0.9
},
"id": "CVE-2019-14822-0e0c26b7",
"deprecated": false,
"target": {
"file": "pngtest.c"
}
},
{
"signature_type": "Line",
"signature_version": "v1",
"source": "https://github.com/pnggroup/libpng/commit/4b1b9ce0285b541f1af8a88a2496e06c5c7c25c7",
"digest": {
"line_hashes": [
"319446082283397417357292147670114060718"
],
"threshold": 0.9
},
"id": "CVE-2019-14822-3cc451fd",
"deprecated": false,
"target": {
"file": "scripts/def.c"
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://github.com/pnggroup/libpng/commit/4b1b9ce0285b541f1af8a88a2496e06c5c7c25c7",
"digest": {
"function_hash": "248162538238179664623997276981225140387",
"length": 669.0
},
"id": "CVE-2019-14822-5e4a066b",
"deprecated": false,
"target": {
"file": "png.c",
"function": "png_get_copyright"
}
},
{
"signature_type": "Line",
"signature_version": "v1",
"source": "https://github.com/pnggroup/libpng/commit/4b1b9ce0285b541f1af8a88a2496e06c5c7c25c7",
"digest": {
"line_hashes": [
"6771525973491036040084693724922220016",
"195508185938392100944718530499581517082",
"275647010778297936193963675511576832388",
"256826767335212246520616614652191899280",
"279336807821086835335477021495116274772",
"277530601395564456060893550767859402611",
"214498808824403563264746917551340068785",
"165725701263494797958230878374140705547",
"20809997950832724462152988439710275236"
],
"threshold": 0.9
},
"id": "CVE-2019-14822-bfdad6b3",
"deprecated": false,
"target": {
"file": "png.h"
}
}
]