[ubuntu/focal-security] xorg-server 2:1.20.8-2ubuntu2.3 (Accepted)

Marc Deslauriers marc.deslauriers at canonical.com
Wed Sep 2 13:07:17 UTC 2020


xorg-server (2:1.20.8-2ubuntu2.3) focal-security; urgency=medium

  * SECURITY UPDATE: Integer underflow in the X input extension protocol
    - debian/patches/CVE-2020-14346.patch: properly calculate length in
      Xi/xichangehierarchy.c.
    - CVE-2020-14346
  * SECURITY UPDATE: server memory leak
    - debian/patches/CVE-2020-14347.patch: initialize memory in
      dix/pixmap.c.
    - CVE-2020-14347
  * SECURITY UPDATE: Integer Underflow Privilege Escalation
    - debian/patches/CVE-2020-14361.patch: fix dataLeft calculation in
      xkb/xkbSwap.c.
    - CVE-2020-14361
  * SECURITY UPDATE: Integer Underflow Privilege Escalation
    - debian/patches/CVE-2020-14362.patch: properly calculate lengths in
      record/record.c.
    - CVE-2020-14362

Date: 2020-08-31 14:32:17.601398+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/xorg-server/2:1.20.8-2ubuntu2.3
-------------- next part --------------
Sorry, changesfile not available.


More information about the Focal-changes mailing list