Opened 8 months ago

Closed 8 months ago

#21747 closed enhancement (fixed)

xwayland-24.1.8

Reported by: Joe Locash Owned by: zeckma
Priority: elevated Milestone: 12.4
Component: BOOK Version: git
Severity: normal Keywords:
Cc:

Description

Updated to include another fix for CVE-2025-49176. https://gitlab.freedesktop.org/xorg/xserver/-/commit/4fc4d76b

Change History (4)

comment:1 by zeckma, 8 months ago

Owner: changed from blfs-book to zeckma
Status: newassigned

comment:2 by zeckma, 8 months ago

The CVE allows the attacker to abuse an integer overflow in BigRequest.

comment:3 by zeckma, 8 months ago

Fixed at aaaeeb3f9ccca0deef80764e59d95f9c5807296a. Leaving ticket open until SAs get issued.

comment:4 by zeckma, 8 months ago

Resolution: fixed
Status: assignedclosed

SA-12.3-059 issued.

Note: See TracTickets for help on using tickets.