Package "xorg-server"
| Name: |
xorg-server
|
Description: |
This package is just an umbrella for a group of other packages,
it has no description. Description samples from packages in group:
- Nested X server
- Xorg X server - source files
- Virtual Framebuffer 'fake' X server
|
| Latest version: |
2:21.1.4-2ubuntu1.7~22.04.16 |
| Release: |
jammy (22.04) |
| Level: |
updates |
| Repository: |
universe |
Links
Other versions of "xorg-server" in Jammy
Packages in group
Deleted packages are displayed in grey.
Changelog
|
xorg-server (2:21.1.4-2ubuntu1.7~22.04.11) jammy; urgency=medium
* d/p/fix-suspend-resume-with-no-input-device.patch (LP: #2056331)
- Make sure info->active and info->vt_active are false
after dropping drm master.
- Normally, this is done when pausing the first
input device, so it breaks when there are no
input device at all.
-- Talha Can Havadar <email address hidden> Fri, 12 Apr 2024 16:23:18 +0200
|
| Source diff to previous version |
| 2056331 |
[SRU] fix suspend/resume when there are no input devices |
|
|
xorg-server (2:21.1.4-2ubuntu1.7~22.04.10) jammy-security; urgency=medium
* SECURITY REGRESSION: Avoid possible double-free
- debian/patches/CVE-2024-31083-regression.patch:
fix a regression caused for a double-free at the last
changes fixed by CVE-2024-31083 (LP: #2060354)
-- Leonidas Da Silva Barbosa <email address hidden> Tue, 09 Apr 2024 00:18:52 -0300
|
| Source diff to previous version |
|
|
|
xorg-server (2:21.1.4-2ubuntu1.7~22.04.9) jammy-security; urgency=medium
* SECURITY UPDATE: Heap buffer over read
- debian/patches/CVE-2024-31080.patch: fixes byte
swapping in replies in Xi/xiselectev.c.
- CVE-2024-31080
* SECURITY UPDATE: Heap buffer over read
- debian/patches/CVE-2024-31081.patch: fixes byte
swapping in replies in Xi/xipassivegrab.c.
- CVE-2024-31081
* SECURITY UPDATE: Heap buffer over read
- debian/patches/CVE-2024-31082.patch: makes
ProcAppleDRICreatePixmap use unswapped length to
send reply in hw/xquartz/xpr/appledir.c.
- CVE-2024-31082
* SECURITY UPDATE: User-after-free
- debian/patches/CVE-2024-31083.patch: fix recounting of glyphs
during ProcRenderAddGlyphs in render/glyph.c.
- CVE-2024-31083
-- Leonidas Da Silva Barbosa <email address hidden> Mon, 01 Apr 2024 17:24:38 -0300
|
| Source diff to previous version |
| CVE-2024-31080 |
A heap-based buffer over-read vulnerability was found in the X.org ser ... |
| CVE-2024-31081 |
A heap-based buffer over-read vulnerability was found in the X.org ser ... |
| CVE-2024-31082 |
A heap-based buffer over-read vulnerability was found in the X.org ser ... |
| CVE-2024-31083 |
User-after-free in ProcRenderAddGlyphs |
|
|
xorg-server (2:21.1.4-2ubuntu1.7~22.04.8) jammy-security; urgency=medium
* SECURITY REGRESSION: memory leak due to incomplete fix (LP: #2051536)
- debian/patches/CVE-2024-21886-3.patch: fix use after free in input
device shutdown in dix/devices.c.
-- Marc Deslauriers <email address hidden> Mon, 29 Jan 2024 07:43:15 -0500
|
| Source diff to previous version |
|
|
|
xorg-server (2:21.1.4-2ubuntu1.7~22.04.7) jammy-security; urgency=medium
* SECURITY UPDATE: Heap buffer overflow in DeviceFocusEvent and
ProcXIQueryPointer
- debian/patches/CVE-2023-6816.patch: allocate enough space for logical
button maps in Xi/xiquerypointer.c, dix/enterleave.c.
- CVE-2023-6816
* SECURITY UPDATE: Reattaching to different master device may lead to
out-of-bounds memory access
- debian/patches/CVE-2024-0229-1.patch: allocate sufficient xEvents for
our DeviceStateNotify in dix/enterleave.c.
- debian/patches/CVE-2024-0229-2.patch: fix DeviceStateNotify event
calculation in dix/enterleave.c.
- debian/patches/CVE-2024-0229-3.patch: when creating a new
ButtonClass, set the number of buttons in Xi/exevents.c.
- debian/patches/CVE-2024-0229-4.patch: require a pointer and keyboard
device for XIAttachToMaster in Xi/xichangehierarchy.c.
- CVE-2024-0229
* SECURITY UPDATE: SELinux unlabeled GLX PBuffer
- debian/patches/CVE-2024-0408.patch: call XACE hooks on the GLX buffer
in glx/glxcmds.c.
- CVE-2024-0408
* SECURITY UPDATE: SELinux context corruption
- debian/patches/CVE-2024-0409.patch: use the proper private key for
cursor in hw/kdrive/ephyr/ephyrcursor.c.
- CVE-2024-0409
* SECURITY UPDATE: Heap buffer overflow in XISendDeviceHierarchyEvent
- debian/patches/CVE-2024-21885.patch: flush hierarchy events after
adding/removing master devices in Xi/xichangehierarchy.c.
- CVE-2024-21885
* SECURITY UPDATE: Heap buffer overflow in DisableDevice
- debian/patches/CVE-2024-21886-1.patch: do not keep linked list
pointer during recursion in dix/devices.c.
- debian/patches/CVE-2024-21886-2.patch: when disabling a master, float
disabled slaved devices too in dix/devices.c.
- CVE-2024-21886
-- Marc Deslauriers <email address hidden> Mon, 15 Jan 2024 10:45:41 -0500
|
|
|
About
-
Send Feedback to @ubuntu_updates