xorg-server 2:1.4.1~git20080105-1ubuntu2 source package in Ubuntu

Changelog

xorg-server (2:1.4.1~git20080105-1ubuntu2) hardy; urgency=low

  * Added security patches:
    - 145_cve_2007_5760_out_of_bounds.patch:  Verify screen index is
      within the index bounds of xf86Screens[].
    - 146_cve_2007_6427_xinput_extension_memory_corruption.patch:  Handle
      swapping of long integer pointers more carefully.
    - 147_cve_2007_6428_tog_cup_extension_memory_corruption.patch:  Verify
      screen index is within the bounds of the number of screens available.
    - 148_cve_2007_6429_mit_shm_and_evi_ext_integer_overflows.patch:  Count
      the number of visuals and check that the requested visual is within
      that limit, to prevent an overflow in REQUEST_FIXED_SIZE.  Improve
      checking of height/width values of pixmaps in SHM.
    - 149_cve_2008_0006_pcf_font_parser_buffer_overflow.patch:  Add checks
      of values for firstCol, lastCol, firstRow, and lastRow before
      allocating.
    - 150_fopen_privs_check.patch:  Switch from directly calling fopen()
      to Fopen(), which includes checks for privileges before calling
      open().

 -- Bryce Harrington <email address hidden>   Thu, 17 Jan 2008 13:57:26 -0800

Upload details

Uploaded by:
Bryce Harrington
Sponsored by:
Kees Cook
Uploaded to:
Hardy
Original maintainer:
Ubuntu Development Team
Architectures:
any
Section:
x11
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
xorg-server_1.4.1~git20080105.orig.tar.gz 11.1 MiB 2a93c20f4b5d7e3397c83e39b08b1fd9aa4dee5de0c8e38e2864e48dcdd21e3a
xorg-server_1.4.1~git20080105-1ubuntu2.diff.gz 664.2 KiB bc2cfb3ecdcc9d66a41891ac3d464559d777e96caa410e1f373cfd7bf53e3771
xorg-server_1.4.1~git20080105-1ubuntu2.dsc 2.5 KiB eb0f5fedcf85686eb5d6d152f68b397bca9ba3e904abde0a85bde50b53b97295

View changes file

Binary packages built by this source

xnest: No summary available for xnest in ubuntu hardy.

No description available for xnest in ubuntu hardy.

xserver-xephyr: No summary available for xserver-xephyr in ubuntu hardy.

No description available for xserver-xephyr in ubuntu hardy.

xserver-xorg-core: No summary available for xserver-xorg-core in ubuntu hardy.

No description available for xserver-xorg-core in ubuntu hardy.

xserver-xorg-core-dbg: No summary available for xserver-xorg-core-dbg in ubuntu hardy.

No description available for xserver-xorg-core-dbg in ubuntu hardy.

xserver-xorg-dev: No summary available for xserver-xorg-dev in ubuntu hardy.

No description available for xserver-xorg-dev in ubuntu hardy.

xvfb: No summary available for xvfb in ubuntu hardy.

No description available for xvfb in ubuntu hardy.