[owc] Weekly X11 changes ending 2007-04-08
OWC
auto at squish.net
Mon Apr 9 08:03:48 BST 2007
OpenBSD X11 changes summary for 2007-04-01 to 2007-04-08 inclusive
==================================================================
xc/extras xc/lib/X11
xc/lib/font xc/programs/Xserver
== xc ================================================================ 01/01 ==
http://www.openbsd.org/cgi-bin/cvsweb/X11/xc
extras
~ freetype2/src/bdf/bdflib.c
TAGGED OPENBSD_3_9
> Multiple security fixes for X.Org:
> - XC-MISC CVE-2007-1003
> XC-MISC Extension ProcXCMiscGetXIDList Memory Corruption
> Vulnerability
> This vulnerability was discovered by Sean Larsson, iDefense Labs.
> - bdf CVE-2007-1351
> BDFFont Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - fontdir CVE-2007-1352
> fonts.dir File Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - libX11 CVE-2007-1667
> Multiple integer overflows in the XGetPixel() and XInitImage functions
> in ImUtil.c (mbalmer@)
~ freetype2/src/bdf/bdflib.c
TAGGED OPENBSD_4_0
> Multiple security fixes for X.Org:
> - XC-MISC CVE-2007-1003
> XC-MISC Extension ProcXCMiscGetXIDList Memory Corruption
> Vulnerability
> This vulnerability was discovered by Sean Larsson, iDefense Labs.
> - bdf CVE-2007-1351
> BDFFont Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - fontdir CVE-2007-1352
> fonts.dir File Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - libX11 CVE-2007-1667
> Multiple integer overflows in the XGetPixel() and XInitImage functions
> in ImUtil.c (mbalmer@)
lib/X11
~ ImUtil.c
TAGGED OPENBSD_3_9
> Multiple security fixes for X.Org:
> - XC-MISC CVE-2007-1003
> XC-MISC Extension ProcXCMiscGetXIDList Memory Corruption
> Vulnerability
> This vulnerability was discovered by Sean Larsson, iDefense Labs.
> - bdf CVE-2007-1351
> BDFFont Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - fontdir CVE-2007-1352
> fonts.dir File Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - libX11 CVE-2007-1667
> Multiple integer overflows in the XGetPixel() and XInitImage functions
> in ImUtil.c (mbalmer@)
~ ImUtil.c
TAGGED OPENBSD_4_0
> Multiple security fixes for X.Org:
> - XC-MISC CVE-2007-1003
> XC-MISC Extension ProcXCMiscGetXIDList Memory Corruption
> Vulnerability
> This vulnerability was discovered by Sean Larsson, iDefense Labs.
> - bdf CVE-2007-1351
> BDFFont Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - fontdir CVE-2007-1352
> fonts.dir File Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - libX11 CVE-2007-1667
> Multiple integer overflows in the XGetPixel() and XInitImage functions
> in ImUtil.c (mbalmer@)
lib/font
~ bitmap/bdfread.c ~ fontfile/fontdir.c
TAGGED OPENBSD_3_9
> Multiple security fixes for X.Org:
> - XC-MISC CVE-2007-1003
> XC-MISC Extension ProcXCMiscGetXIDList Memory Corruption
> Vulnerability
> This vulnerability was discovered by Sean Larsson, iDefense Labs.
> - bdf CVE-2007-1351
> BDFFont Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - fontdir CVE-2007-1352
> fonts.dir File Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - libX11 CVE-2007-1667
> Multiple integer overflows in the XGetPixel() and XInitImage functions
> in ImUtil.c (mbalmer@)
~ bitmap/bdfread.c ~ fontfile/fontdir.c
TAGGED OPENBSD_4_0
> Multiple security fixes for X.Org:
> - XC-MISC CVE-2007-1003
> XC-MISC Extension ProcXCMiscGetXIDList Memory Corruption
> Vulnerability
> This vulnerability was discovered by Sean Larsson, iDefense Labs.
> - bdf CVE-2007-1351
> BDFFont Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - fontdir CVE-2007-1352
> fonts.dir File Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - libX11 CVE-2007-1667
> Multiple integer overflows in the XGetPixel() and XInitImage functions
> in ImUtil.c (mbalmer@)
programs/Xserver
~ Xext/xcmisc.c
TAGGED OPENBSD_3_9
> Multiple security fixes for X.Org:
> - XC-MISC CVE-2007-1003
> XC-MISC Extension ProcXCMiscGetXIDList Memory Corruption
> Vulnerability
> This vulnerability was discovered by Sean Larsson, iDefense Labs.
> - bdf CVE-2007-1351
> BDFFont Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - fontdir CVE-2007-1352
> fonts.dir File Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - libX11 CVE-2007-1667
> Multiple integer overflows in the XGetPixel() and XInitImage functions
> in ImUtil.c (mbalmer@)
~ Xext/xcmisc.c
TAGGED OPENBSD_4_0
> Multiple security fixes for X.Org:
> - XC-MISC CVE-2007-1003
> XC-MISC Extension ProcXCMiscGetXIDList Memory Corruption
> Vulnerability
> This vulnerability was discovered by Sean Larsson, iDefense Labs.
> - bdf CVE-2007-1351
> BDFFont Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - fontdir CVE-2007-1352
> fonts.dir File Parsing Integer Overflow Vulnerability
> The discoverer of this vulnerability wishes to remain anonymous.
> - libX11 CVE-2007-1667
> Multiple integer overflows in the XGetPixel() and XInitImage functions
> in ImUtil.c (mbalmer@)
===============================================================================
More information about the owc
mailing list