-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 17 Dec 2022 11:00:08 +0100 Source: xorg-server Binary: xdmx xdmx-dbgsym xdmx-tools xdmx-tools-dbgsym xnest xnest-dbgsym xserver-xephyr xserver-xephyr-dbgsym xserver-xorg-core xserver-xorg-core-dbgsym xserver-xorg-core-udeb xserver-xorg-dev xserver-xorg-legacy xserver-xorg-legacy-dbgsym xvfb xvfb-dbgsym xwayland xwayland-dbgsym Architecture: i386 Version: 2:1.20.11-1+deb11u4 Distribution: bullseye-security Urgency: high Maintainer: all / amd64 / i386 Build Daemon (x86-conova-01) Changed-By: Salvatore Bonaccorso Description: xdmx - distributed multihead X server xdmx-tools - Distributed Multihead X tools xnest - Nested X server xserver-xephyr - nested X server xserver-xorg-core - Xorg X server - core server xserver-xorg-core-udeb - Xorg X server - core server (udeb) xserver-xorg-dev - Xorg X server - development files xserver-xorg-legacy - setuid root Xorg server wrapper xvfb - Virtual Framebuffer 'fake' X server xwayland - Xwayland X server Closes: 1026071 Changes: xorg-server (2:1.20.11-1+deb11u4) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Xtest: disallow GenericEvents in XTestSwapFakeInput (CVE-2022-46340) (Closes: #1026071) * Xi: disallow passive grabs with a detail > 255 (CVE-2022-46341) (Closes: #1026071) * Xext: free the XvRTVideoNotify when turning off from the same client (CVE-2022-46342) (Closes: #1026071) * Xext: free the screen saver resource when replacing it (CVE-2022-46343) (Closes: #1026071) * Xi: return an error from XI property changes if verification failed * Xi: avoid integer truncation in length check of ProcXIChangeProperty (CVE-2022-46344) (Closes: #1026071) * xkb: reset the radio_groups pointer to NULL after freeing it (CVE-2022-4283) (Closes: #1026071) Checksums-Sha1: adc29c3d20e9cf7feb0b7a3e33553d06b3371f8d 2816416 xdmx-dbgsym_1.20.11-1+deb11u4_i386.deb 5377c82af9ef0761b9411ac7a392187e5daa48ae 181796 xdmx-tools-dbgsym_1.20.11-1+deb11u4_i386.deb dd73e9eac62fa89b2eae2c9ecaafbec9f3d3d7cd 2317008 xdmx-tools_1.20.11-1+deb11u4_i386.deb 15717fafd63887f25cd7763641486e497687293c 3074416 xdmx_1.20.11-1+deb11u4_i386.deb 3fbf0db2efca9ad61cd991eb0048b7683959b83a 2388416 xnest-dbgsym_1.20.11-1+deb11u4_i386.deb 5abaa5f7d162574b5a3fa099fe26cfb3622832d8 2957384 xnest_1.20.11-1+deb11u4_i386.deb 7e97f29dd6d7bcbc1cb7aedbda4facb6280c9ee9 16643 xorg-server_1.20.11-1+deb11u4_i386-buildd.buildinfo d251bcb1330e3feeafe39c381fdf0a89fdf60ef2 3465932 xserver-xephyr-dbgsym_1.20.11-1+deb11u4_i386.deb 3f24213d164745d97dfc9263bba52ab41f814130 3243416 xserver-xephyr_1.20.11-1+deb11u4_i386.deb a79a5582ab55be87f368dd33db4b3c82d375cc78 5057680 xserver-xorg-core-dbgsym_1.20.11-1+deb11u4_i386.deb dcfa9908415fdb32d04e1858f0cfe95541a9e89f 997000 xserver-xorg-core-udeb_1.20.11-1+deb11u4_i386.udeb 4d30c0b355d2fa9929d98999bdc48eaf4740fd62 3675384 xserver-xorg-core_1.20.11-1+deb11u4_i386.deb 8a2f31409f0a70a1427f61db97cb698d368435c0 2457868 xserver-xorg-dev_1.20.11-1+deb11u4_i386.deb c1c201a316424a79198aaefa03c5065f53057a2c 8596 xserver-xorg-legacy-dbgsym_1.20.11-1+deb11u4_i386.deb 6505a1108827eb84fa2bafe1536460aea8be8fc5 2289320 xserver-xorg-legacy_1.20.11-1+deb11u4_i386.deb 215580633f9724ea4dba144c14157fc2d6423df9 2904396 xvfb-dbgsym_1.20.11-1+deb11u4_i386.deb cab3d804bb6c58a21c74fc5688b329e029930357 3100760 xvfb_1.20.11-1+deb11u4_i386.deb d018c506129f6ad9f4fa3d95fcbd24f4c8f47af1 3274612 xwayland-dbgsym_1.20.11-1+deb11u4_i386.deb 65f102f37d4c32c0c7f984f31c3948635e702b0d 3191984 xwayland_1.20.11-1+deb11u4_i386.deb Checksums-Sha256: f441a915671ce5c3d8ef761e30fa151f18edc1c33628fd93f2b7a2f39ca52581 2816416 xdmx-dbgsym_1.20.11-1+deb11u4_i386.deb 59e957a11d29c73ee10cfec0e6454e055562266f11fa4eef2b455a5115b3aeaa 181796 xdmx-tools-dbgsym_1.20.11-1+deb11u4_i386.deb 14d715f97cd1155790a54d648089ea9971142738aab895299b71de48b98e778a 2317008 xdmx-tools_1.20.11-1+deb11u4_i386.deb 034cdd84f81ccf250f22c576c9c1f41a4312173138992242e545513744c3fc71 3074416 xdmx_1.20.11-1+deb11u4_i386.deb 1937e4b36bcaac69a5b8c6f1ad063be7b1e449af13fbfb231e8e7e1d73abea0a 2388416 xnest-dbgsym_1.20.11-1+deb11u4_i386.deb 4d73af4a1637e67d93f6c64358244dacb1a8719aff98265f195ba4fd5356a791 2957384 xnest_1.20.11-1+deb11u4_i386.deb 181a47758607861323d2c0f631c73005ee5b4642ccda8a2907ae9bd558206800 16643 xorg-server_1.20.11-1+deb11u4_i386-buildd.buildinfo 0da110a75e4c1e729c3db8b44418e9e42fc4f851f8e2655ceeaa7d80f30bb988 3465932 xserver-xephyr-dbgsym_1.20.11-1+deb11u4_i386.deb 61a20d299b521c143d6bfb16701a6119cfbaecb842734ef4faaa6050d9a82408 3243416 xserver-xephyr_1.20.11-1+deb11u4_i386.deb e91b88e455715e9f4c4b1010be8cfb762f87690b45e62955740ade8d3c230936 5057680 xserver-xorg-core-dbgsym_1.20.11-1+deb11u4_i386.deb ebc5b237b91014c90ee2a1cfe390c6707bb47020660ea64a7af6c50abc60d811 997000 xserver-xorg-core-udeb_1.20.11-1+deb11u4_i386.udeb eb2fbb354c9b28cd6b711e3fea9fb1c77d4d96f65d8aea61c41f1c29bfb4f807 3675384 xserver-xorg-core_1.20.11-1+deb11u4_i386.deb 1f1661ecc024b59b3d7bf10dc77c3a19b1ebdd1112e684942544862ef7ed7c25 2457868 xserver-xorg-dev_1.20.11-1+deb11u4_i386.deb c996da02dae86f6a18fa0cdbb2c978ab103bbd7c230819b1c9d87d32752a29ae 8596 xserver-xorg-legacy-dbgsym_1.20.11-1+deb11u4_i386.deb ccb9caaba99a99009fa86552fb93858baf75a5270753e2c8dd7fe68afd9a0fcc 2289320 xserver-xorg-legacy_1.20.11-1+deb11u4_i386.deb 12a4b464c07c4e68248613f25e9520d33db69705dad34a4c9d4d74cc6977f8bd 2904396 xvfb-dbgsym_1.20.11-1+deb11u4_i386.deb 05235f06215a320c099bc68b2ded082dcd881379a99d0f564f92ccb1d9587f84 3100760 xvfb_1.20.11-1+deb11u4_i386.deb a777cae8d6c95877048f1821509c0364a774ced1f072b1d06f3368a02407a3e6 3274612 xwayland-dbgsym_1.20.11-1+deb11u4_i386.deb 92b7c96304d5f8eba5580b81b059bd7af53204df19100b529f5645d5cb1f860e 3191984 xwayland_1.20.11-1+deb11u4_i386.deb Files: 972b8e7ab3611a48dc824a7bb6a18382 2816416 debug optional xdmx-dbgsym_1.20.11-1+deb11u4_i386.deb 74ddea9f2a3eb53fc8c8a8139c5c6af5 181796 debug optional xdmx-tools-dbgsym_1.20.11-1+deb11u4_i386.deb 33601d3723c4e501096f914d01997fc5 2317008 x11 optional xdmx-tools_1.20.11-1+deb11u4_i386.deb 6bee187d3c9ee64293bad7b7a95028fe 3074416 x11 optional xdmx_1.20.11-1+deb11u4_i386.deb 97030c9217401679628afa0e5c73ccf4 2388416 debug optional xnest-dbgsym_1.20.11-1+deb11u4_i386.deb 995a59d957787bb5ad237251220062c5 2957384 x11 optional xnest_1.20.11-1+deb11u4_i386.deb d83d180693a7d921f25deb1d9ab75171 16643 x11 optional xorg-server_1.20.11-1+deb11u4_i386-buildd.buildinfo ace431a27ad6dc78e4cb6067139c774c 3465932 debug optional xserver-xephyr-dbgsym_1.20.11-1+deb11u4_i386.deb 3948f22123f4b6fbacce1be9026cf764 3243416 x11 optional xserver-xephyr_1.20.11-1+deb11u4_i386.deb bf49f71381b30afdec8fd416d1959623 5057680 debug optional xserver-xorg-core-dbgsym_1.20.11-1+deb11u4_i386.deb e75f5960dc09e10663ecd724c82370a5 997000 debian-installer optional xserver-xorg-core-udeb_1.20.11-1+deb11u4_i386.udeb cb0573e65a1d3536cb2201b85e8de48e 3675384 x11 optional xserver-xorg-core_1.20.11-1+deb11u4_i386.deb 288f5835b840650910ec9de5e751b5bb 2457868 x11 optional xserver-xorg-dev_1.20.11-1+deb11u4_i386.deb ed7ebb17508a32abd18f6bf59584ba34 8596 debug optional xserver-xorg-legacy-dbgsym_1.20.11-1+deb11u4_i386.deb cee0d95d6f69c16b88a527bb0d92c135 2289320 x11 optional xserver-xorg-legacy_1.20.11-1+deb11u4_i386.deb c3a714ce30a87a8f0a95c07e4339e785 2904396 debug optional xvfb-dbgsym_1.20.11-1+deb11u4_i386.deb 3507405225bf56f0f5c5d45ab12eeffc 3100760 x11 optional xvfb_1.20.11-1+deb11u4_i386.deb 6d6227ede4a613ceb171ef4c8b2bc18c 3274612 debug optional xwayland-dbgsym_1.20.11-1+deb11u4_i386.deb 7f382e0dd1cc54bc218afd92004c6ad7 3191984 x11 optional xwayland_1.20.11-1+deb11u4_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEHhnKQNkF1LuwA8CntGhFlQFFlWsFAmOdo9MACgkQtGhFlQFF lWuK4RAAyAK/3t/5N7hwp5JFEv/a4hltV/h9+R4MIgdNVEK86Cucdr7SgMNYeT0t F1/3ALcS/k6jE/miH/PNL6KLUItks/zGu/09ZtGNanmNk418Pd7fjLed3KULqsYb ufIgSwasv8aomJEvbiIvwe3e7ls3WpzMdnlNDatqbmaHw2M0KlMsWlrpu2CEYp+W OY9NjtkdM4GuGM4cKpMmmJ165oHa0DXPTks6ePHiNaTBL+7U66+LlqYUui21C3KE o1P337tJbNjUq/1vBsVv19IaxCakHxfCulPWTi0ndzzy2UgsLWZHG4PzDS+2WybV kJA0QNER101/M1byX4XftzRxCFumLQhk1ALgQAfWIt94FwRJ51TgXI0u16h02EOi ojiUTPYKL/La7lLQK/5d9z8hFnPkDHcR6XbgAmfd0zU5QCFwAEsn+LQ5Tivkvmml 5XUMPaiSKwwLlDn065GNZS9g7geodhbgmcqbAXPJcg0HGV33Y0nx8ascUPAviXnm wnxtYSm7ptuUrfL+4rQdb3T2UcjInwY/B+bL0Ya/ytZZxrHOsyaP2jr1gKrzobXR fFQR4AF+faRlOsT/0aIni7P/dTolpCyZfkg+ExIKCOLIv0m7r5a612xmwOmoqH6I ucly9r538bXFI8Rsu1zvYMTjqrER6N6slOU/uu0dYjMrPgnjOUQ= =SCCm -----END PGP SIGNATURE-----