[ubuntu/precise-security] xorg-server 2:1.11.4-0ubuntu10.17 (Accepted)

Marc Deslauriers marc.deslauriers at canonical.com
Tue Feb 17 12:13:25 UTC 2015


xorg-server (2:1.11.4-0ubuntu10.17) precise-security; urgency=medium

  * SECURITY UPDATE: information leak and denial of service in
    XkbSetGeometry
    - debian/patches/CVE-2015-0255.patch: properly check lengths in
      xkb/xkb.c.
    - CVE-2015-0255
  * SECURITY UPDATE: denial of service via invalid trapezoid (LP: #1197921)
    - debian/patches/CVE-2013-6424.patch: don't render invalid trapezoids
      in exa/exa_render.c, fix underflow in render/picture.h.
    - CVE-2013-6424
  * debian/patches/CVE-2014-8xxx/0038-CVE-2014-8092-*: fix regression in
    previous security update by allowing zero-height PutImage requests in
    dix/dispatch.c.

Date: 2015-02-12 14:41:15.084324+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/xorg-server/2:1.11.4-0ubuntu10.17
-------------- next part --------------
Sorry, changesfile not available.


More information about the Precise-changes mailing list