-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 04 Apr 2024 11:59:35 +0200 Source: xorg-server Binary: xnest xnest-dbgsym xserver-xephyr xserver-xephyr-dbgsym xserver-xorg-core xserver-xorg-core-dbgsym xserver-xorg-core-udeb xserver-xorg-dev xserver-xorg-legacy xserver-xorg-legacy-dbgsym xvfb xvfb-dbgsym Architecture: armel Version: 2:21.1.7-3+deb12u6 Distribution: bookworm-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-06) Changed-By: Julien Cristau Description: xnest - Nested X server xserver-xephyr - nested X server xserver-xorg-core - Xorg X server - core server xserver-xorg-core-udeb - Xorg X server - core server (udeb) xserver-xorg-dev - Xorg X server - development files xserver-xorg-legacy - setuid root Xorg server wrapper xvfb - Virtual Framebuffer 'fake' X server Changes: xorg-server (2:21.1.7-3+deb12u6) bookworm-security; urgency=high . * CVE-2024-31080: Heap buffer overread/data leakage in ProcXIGetSelectedEvents * CVE-2024-31081: Heap buffer overread/data leakage in ProcXIPassiveGrabDevice * CVE-2024-31082: Heap buffer overread/data leakage in ProcAppleDRICreatePixmap * CVE-2024-31083: User-after-free in ProcRenderAddGlyphs Checksums-Sha1: daebd0655569346c5ab5ae912043c7cdf0b1ec7c 2619816 xnest-dbgsym_21.1.7-3+deb12u6_armel.deb ac85d70ca646204997cbe0b60177ca94482238b2 2898696 xnest_21.1.7-3+deb12u6_armel.deb ed3eacafc0a8d14b8b0e1d1927a8afc45e34eee3 14664 xorg-server_21.1.7-3+deb12u6_armel-buildd.buildinfo 83a186e32fc4f8a3e6a1fd01b2fb955bf19493f3 3853968 xserver-xephyr-dbgsym_21.1.7-3+deb12u6_armel.deb c0a851c530098cb7678e900bc08bbc2deb280655 3122908 xserver-xephyr_21.1.7-3+deb12u6_armel.deb 2841dcf9a2ffba246f9547ea75244a61a11ca81b 5625556 xserver-xorg-core-dbgsym_21.1.7-3+deb12u6_armel.deb 0cf635a5ffc15aafe50d971568189ddff593dcd9 800028 xserver-xorg-core-udeb_21.1.7-3+deb12u6_armel.udeb 3522fa3c8fa46f0fe796da06c6c8824146752558 3465960 xserver-xorg-core_21.1.7-3+deb12u6_armel.deb 655573cf828cb953f42256fed208660a907bfa1b 2554088 xserver-xorg-dev_21.1.7-3+deb12u6_armel.deb e6dd5f86fdd48e15343566db6580483d24458ab9 9388 xserver-xorg-legacy-dbgsym_21.1.7-3+deb12u6_armel.deb e4741923e28e3b9c457aa01da0691fe8dcd44764 2387944 xserver-xorg-legacy_21.1.7-3+deb12u6_armel.deb 34c008c116b53ec8fcc2dd9a326b96ccfad82508 3188200 xvfb-dbgsym_21.1.7-3+deb12u6_armel.deb cf2e4201c230af2d404f0d5e77e2f24f2dfad21a 3008504 xvfb_21.1.7-3+deb12u6_armel.deb Checksums-Sha256: 5019fadf71b4cf6a02577976d8b4fdf6c186e13168cb2e1ecad4dd32ef57ada0 2619816 xnest-dbgsym_21.1.7-3+deb12u6_armel.deb f3153dee29e6dd03226907bdb4c78600b3b65782289caef59296c7dcbe68fa31 2898696 xnest_21.1.7-3+deb12u6_armel.deb f1b059f9eaaf23144ca9eb0e3a59e3b3a70a90296dd2fb3d15a232d8b146bb44 14664 xorg-server_21.1.7-3+deb12u6_armel-buildd.buildinfo 8e4701f9caa4bb95a992036f622c24a32dbbe55c712ece593459da01aca5b199 3853968 xserver-xephyr-dbgsym_21.1.7-3+deb12u6_armel.deb 57a197f47f95b77ca4a174b19f6325d8a162d4c77ee422d1690257f243233f85 3122908 xserver-xephyr_21.1.7-3+deb12u6_armel.deb 066c609c73a4e534904159c8cca22f445143e080cfa5e455b1560d28cdfab36b 5625556 xserver-xorg-core-dbgsym_21.1.7-3+deb12u6_armel.deb 177c9abe5132df34e740fd1db8e9cee646f7f8d64882da0011a08a924ef54054 800028 xserver-xorg-core-udeb_21.1.7-3+deb12u6_armel.udeb 3ae5bedde29c544486357061c8b9ab1666a9f5b9cb10054891528a3be7dcd77b 3465960 xserver-xorg-core_21.1.7-3+deb12u6_armel.deb a6f6216d1c5c1093d0f4b4f959ee4a022ba525ab8c4f5c76fd4cbe06b479b5fc 2554088 xserver-xorg-dev_21.1.7-3+deb12u6_armel.deb ab9dbf56ddb278a34d44bc06ae180cb06ff66262e0e46340560acdfddacaaaca 9388 xserver-xorg-legacy-dbgsym_21.1.7-3+deb12u6_armel.deb 85048f3ac4a3f664b71b45b944eda80719208f8a6c2ca12cadc6370bf4c76882 2387944 xserver-xorg-legacy_21.1.7-3+deb12u6_armel.deb c8f8262b5c8482620d29a76d13c2ff982a7eb09b3bb1e342c057364bee820e2e 3188200 xvfb-dbgsym_21.1.7-3+deb12u6_armel.deb 1184ec44ad157155f09277b2156c6657885abff648b0345162df96f812f16f28 3008504 xvfb_21.1.7-3+deb12u6_armel.deb Files: f3d73bb4b383f57b30eea479f3cc6e8f 2619816 debug optional xnest-dbgsym_21.1.7-3+deb12u6_armel.deb bd278e797cf09aec72814d98b931b74e 2898696 x11 optional xnest_21.1.7-3+deb12u6_armel.deb dc93102914e76c9858dc5836bcada543 14664 x11 optional xorg-server_21.1.7-3+deb12u6_armel-buildd.buildinfo 1e544c252f1dc5223752b490e1c37343 3853968 debug optional xserver-xephyr-dbgsym_21.1.7-3+deb12u6_armel.deb abac6c8f4ce1fa3da8534afe2c9da004 3122908 x11 optional xserver-xephyr_21.1.7-3+deb12u6_armel.deb e78272c8889185a6bf914187dc1b4b2b 5625556 debug optional xserver-xorg-core-dbgsym_21.1.7-3+deb12u6_armel.deb d48df8295dd4f11e007be51f8e0dd86c 800028 debian-installer optional xserver-xorg-core-udeb_21.1.7-3+deb12u6_armel.udeb b3561764abbd9b113af263b01bdc9f35 3465960 x11 optional xserver-xorg-core_21.1.7-3+deb12u6_armel.deb d7f7e4f282864dbca9bfd0d23fe84f7e 2554088 x11 optional xserver-xorg-dev_21.1.7-3+deb12u6_armel.deb b60408367fa66484914fc11c3217d6da 9388 debug optional xserver-xorg-legacy-dbgsym_21.1.7-3+deb12u6_armel.deb 6bf90837f0f8bad74a97cc3268cbcacd 2387944 x11 optional xserver-xorg-legacy_21.1.7-3+deb12u6_armel.deb 5113e51326da132719fa5945381dc5eb 3188200 debug optional xvfb-dbgsym_21.1.7-3+deb12u6_armel.deb cb2ea4331dfd2ddc21b91b330e913f91 3008504 x11 optional xvfb_21.1.7-3+deb12u6_armel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEdkvJoTVAIZVYaO9cyYck2apzqqMFAmYOhu8ACgkQyYck2apz qqM8bRAA7bos97tNnhUwcrP1xFKUUT1c/9+0jur7tSg3HxKHp3z3mu576Yy5mbJ3 J451xInYsXiTboWootFlmZal+2uG6f/SpTtObl4wwlH8HxeKTjT1DbLDKM8ZkGN7 kYIawQgRJvKHDhg03JqnpxrJBYDsD/R+wD2f4wqaTpZVzDZqAiViCej0TjJwcpuQ gZb80T+YOPs1eZHOx98Dd6gYLOHyBEzO75XP4Cu3YS0AmSxv4f0+5pNP0IMsDn1a 9QsA3cofhEtO6utvFycqFyeCLu8jqO9KrhcgCAuZixhVFOVE/q0UXQiN3ZynaFtW YMVwE4pJuAvoRdPUWyNTWSumOG4fOt9B/kRa3esI5cS9jYmoiT6BdiAAxJL8Xo+T zTg8QLm0BFWytgKuq+O4R8ENFBbxOfAT3n3Jj8aGhVpAD9rrTybYkSZ6kqwR9f1G G5oK5bjCstxAxg8JZLa/X4xuDO3qU52Q0QBnCYH/UnMUvv77NR0rNCC4IYgeokk3 EMUo4VxVW/K5E1ur3WNAwHzaV7YeEpgAlCUKQxy5Jann60p/hUGwYK5PuiliSYNX GDA0Rq5baVmEu5/R5s+tk/p/xDB4oxUMjXJwEOW1wjrXWlfDXKMHhdWO/MfT4LKp 0aMm1TMjiw3D4g/k8YxxD2u2cte+Euxb0pq6zVsJsbPuQ/7tvTY= =cDiU -----END PGP SIGNATURE-----