-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 17 Dec 2022 11:00:08 +0100 Source: xorg-server Binary: xorg-server-source xserver-common Architecture: all Version: 2:1.20.11-1+deb11u4 Distribution: bullseye-security Urgency: high Maintainer: all Build Daemon (x86-grnet-02) Changed-By: Salvatore Bonaccorso Description: xorg-server-source - Xorg X server - source files xserver-common - common files used by various X servers Closes: 1026071 Changes: xorg-server (2:1.20.11-1+deb11u4) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Xtest: disallow GenericEvents in XTestSwapFakeInput (CVE-2022-46340) (Closes: #1026071) * Xi: disallow passive grabs with a detail > 255 (CVE-2022-46341) (Closes: #1026071) * Xext: free the XvRTVideoNotify when turning off from the same client (CVE-2022-46342) (Closes: #1026071) * Xext: free the screen saver resource when replacing it (CVE-2022-46343) (Closes: #1026071) * Xi: return an error from XI property changes if verification failed * Xi: avoid integer truncation in length check of ProcXIChangeProperty (CVE-2022-46344) (Closes: #1026071) * xkb: reset the radio_groups pointer to NULL after freeing it (CVE-2022-4283) (Closes: #1026071) Checksums-Sha1: c8730f214ffc369c4aacf2010ed996dad650ecdb 7484908 xorg-server-source_1.20.11-1+deb11u4_all.deb 3f9a8961997d3725495dbd7553c51c62beac2fae 11806 xorg-server_1.20.11-1+deb11u4_all-buildd.buildinfo ca7b5300cbb4f73fadaa0bb26fbb0bb6d2b59bb3 2283772 xserver-common_1.20.11-1+deb11u4_all.deb Checksums-Sha256: f08ef1a027c54ed590f32a9f0606b309a4174319e611f06905a582201b15ad5d 7484908 xorg-server-source_1.20.11-1+deb11u4_all.deb 9a2d2bb75940874ff5ebad6c2a9c8c42207fb721b3c611d66fda4ea2f209c3a6 11806 xorg-server_1.20.11-1+deb11u4_all-buildd.buildinfo 7e30df36dc7375a7c8731a0fe6f3dc150c1d965370c51bf4d3a97f25d5d60684 2283772 xserver-common_1.20.11-1+deb11u4_all.deb Files: 3dfb1f32aab0aec56fad955d0911611f 7484908 x11 optional xorg-server-source_1.20.11-1+deb11u4_all.deb d39eb0734a8d161ae6b19aeb81d0995f 11806 x11 optional xorg-server_1.20.11-1+deb11u4_all-buildd.buildinfo aeca628eac4a256a6101d564f4e8d44a 2283772 x11 optional xserver-common_1.20.11-1+deb11u4_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEfA7dsu0ZDzzHaw+5NX/smi6DkKgFAmOdovEACgkQNX/smi6D kKjc9w//Zwk5q+tgxauW7i22niUmHPykLlnlX9fFjdgULEye5lh880jecNqCsYLI T1moXARtFpwW4TUH6qp7D4GO6w6mZk71QrZ7JUWDeWVbaITcWgWUijdYBz9/zHwH bRwl/VeoQ3TW7hUQFodsdo13fSCHtxD08IOYk7RiqOzO/r/5D9EaIh+vs4fYLcuC cUTppg013GnqOMTXjc9tRy/fLJ4gFET2WKE2BR/dIUhh5yyW9NKGjlI85qLte2eJ 6eNH64J6VhFh4fHkxFijaLp8h7KNvnHCIsfOkhovr0Z6LBBHeBSfiCynoKPH3Y8o TYsony5CtZT3DxTiaQjFbegOPFSVQvYtf75h9aP802farJodSfkh8ttIuU+D9830 qy07PP0lT5YEMrwuy/4AZQZCViEBWbLSPa1kocR6l6VNpRiLLOhPf/SiLjAv66xr G8e1E87ao9zJm6h/AJvO2QZGsarSe0IwgsChb348w71YNeIvpQF0IipZWI8zvroO 8u5DxFhy5CBSg7aK9aGrzLMCh7mHr9srcPE4ShWU5SVEtK4qPmFGIHXU5BRrarwb hgHTqJEngkxyw7e0miqk8oajD3F06cwe5BngzhXo4VQ18XQSocJWOVTF2nsh7lQy JS+Gej6g1yDi26d4eE5KCyuJt03OYHy6b8sZtOdjwyOOSheeexo= =10ni -----END PGP SIGNATURE-----