Description

In X.Org X server 20.11 through 21.1.16, when a client application uses easystroke for mouse gestures, the main thread modifies various data structures used by the input thread without acquiring a lock, aka a race condition. In particular, AttachDevice in dix/devices.c does not acquire an input lock.

INFO

Published Date :

2025-03-16T00:00:00.000Z

Last Modified :

2025-03-17T16:07:13.541Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2022-49737 vulnerability.

No data.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact