[ubuntu/vivid-proposed] xorg-server 2:1.16.2.901-1ubuntu4 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Tue Feb 17 13:36:14 UTC 2015


xorg-server (2:1.16.2.901-1ubuntu4) vivid; urgency=medium

  * SECURITY UPDATE: information leak and denial of service in
    XkbSetGeometry
    - debian/patches/CVE-2015-0255.patch: properly check lengths in
      xkb/xkb.c.
    - CVE-2015-0255
  * debian/patches/dix-allow-zero-height-putimage-requests.patch: fix
    regression in CVE-2014-8092 security update by allowing zero-height
    PutImage requests in dix/dispatch.c.

Date: Tue, 17 Feb 2015 07:56:08 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu X-SWAT <ubuntu-x at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/xorg-server/2:1.16.2.901-1ubuntu4
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Tue, 17 Feb 2015 07:56:08 -0500
Source: xorg-server
Binary: xserver-xorg-core xserver-xorg-core-udeb xserver-xorg-dev xdmx xdmx-tools xnest xvfb xserver-xephyr xserver-xorg-core-dbg xserver-common xserver-xorg-xmir xorg-server-source xwayland
Architecture: source
Version: 2:1.16.2.901-1ubuntu4
Distribution: vivid
Urgency: medium
Maintainer: Ubuntu X-SWAT <ubuntu-x at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
 xdmx       - distributed multihead X server
 xdmx-tools - Distributed Multihead X tools
 xnest      - Nested X server
 xorg-server-source - Xorg X server - source files
 xserver-common - common files used by various X servers
 xserver-xephyr - nested X server
 xserver-xorg-core - Xorg X server - core server
 xserver-xorg-core-dbg - Xorg - the X.Org X server (debugging symbols)
 xserver-xorg-core-udeb - Xorg X server - core server (udeb)
 xserver-xorg-dev - Xorg X server - development files
 xserver-xorg-xmir - Xorg - the X.Org X server (module for running nested in Mir)
 xvfb       - Virtual Framebuffer 'fake' X server
 xwayland   - Xwayland X server
Changes:
 xorg-server (2:1.16.2.901-1ubuntu4) vivid; urgency=medium
 .
   * SECURITY UPDATE: information leak and denial of service in
     XkbSetGeometry
     - debian/patches/CVE-2015-0255.patch: properly check lengths in
       xkb/xkb.c.
     - CVE-2015-0255
   * debian/patches/dix-allow-zero-height-putimage-requests.patch: fix
     regression in CVE-2014-8092 security update by allowing zero-height
     PutImage requests in dix/dispatch.c.
Checksums-Sha1:
 64145dcbf6630a79cc69cae8f708e97b85e2cd13 4972 xorg-server_1.16.2.901-1ubuntu4.dsc
 5f1344e3d66b6c75d2b41174be4da016539d975c 189772 xorg-server_1.16.2.901-1ubuntu4.diff.gz
Checksums-Sha256:
 296fac6c50e4e38569538653689f2012ff26d547b4a0bc86de0b0293031162a0 4972 xorg-server_1.16.2.901-1ubuntu4.dsc
 620efea0f5828f79efdeb9db9ac5b7c130c585856cc46dbc5b6afe454c5637a1 189772 xorg-server_1.16.2.901-1ubuntu4.diff.gz
Files:
 86909cfe1fc066d39da868b73d4cfe4f 4972 x11 optional xorg-server_1.16.2.901-1ubuntu4.dsc
 12e12cf2b7bb0d9a3d5449508d45744b 189772 x11 optional xorg-server_1.16.2.901-1ubuntu4.diff.gz
Original-Maintainer: Debian X Strike Force <debian-x at lists.debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1

iQIcBAEBCgAGBQJU40MsAAoJEGVp2FWnRL6TDy0QALV+/iw16gs5A6YdimzwDn+f
RljZnSXG0r8BfEhCTl1qK3l1AXNtj8itxFHxrYzT60qKoHfiJ5UpVUezIWuyTk4l
hbBVBjYOS4D19e+5q5dZLTKCZ8ocTjeXhmgoRl2T9cKoEhxcI5WlstPesbzWCsDJ
K44WXw3l3Ggk8w5ms1Z6ogsNZivDGtFnPMC2XlDVRe6GMr5t3fBH0NEYZ6SmHN6V
HddIi71mvBv1QaLM+A9+bXlB2+QhinopJyvHInRTmtG2fHFisLypgE862z1+9gA3
Uoag/6f+vbT9vBdEAObbqg4f2sLUatVeVYKWL7JG5rGVv9T/GOW2zG+nmrl6ooKa
cec3+qmlKdpf/Lm43YO0lB2iRjTvqBme0aynoUBur30AXQDzVpxviM04RVKoG4sE
V7J9sXeHvhDoURLWePCYQx/S6FSJGoBwGWMaQpfptxlSiikXwl/go8WJiQQRLVZF
8HlinwSIZAB0kkPyvgWswtTA5FhJFAyBmetoxCYYpR+5O6r0WXDeiBO/faU6jWA6
NnhYkVlnuSrxOj8u9R/nf9iQEkpz1YQ5zPBt6BYcq/BJ9fLoNBHlduYPN0pNLpTt
Zm/GfcF8zjP69AMJs899DzdUPDIpo13OKsfWEuqQrIFTpgNgMfenwMb4Y/Imt+gf
JAcadWQcC8G72b9xCGXg
=mDMF
-----END PGP SIGNATURE-----


More information about the Vivid-changes mailing list