[owc] Weekly X11 changes ending 2007-01-14

OWC auto at squish.net
Mon Jan 15 07:04:07 GMT 2007


OpenBSD X11 changes summary for 2007-01-07 to 2007-01-14 inclusive
==================================================================

xc-old                                  xc/programs/Xserver
xc/programs/ssh-askpass                 

== xc ================================================================ 01/02 ==

  http://www.openbsd.org/cgi-bin/cvsweb/X11/xc

programs/Xserver

  ~ dbe/dbe.c                             ~ render/render.c

  > CVE-2006-6101 CVE-2006-6102 CVE-2006-6103: The ProcDbeGetVisualInfo(),
  > ProcDbeSwapBuffer() and ProcRenderAddGlyphs() functions in the X server,
  > implementing requests for the dbe and render extensions, may be used
  > to overwrite data on the stack or in other parts of the X server memory.
  > (matthieu@)

programs/ssh-askpass

  ~ Imakefile                             ~ x11-ssh-askpass.c
  ~ x11-ssh-askpass.h                     

  > Make ssh-askpass xinerama aware. Patch from reyk at .anks. (matthieu@)

  ~ Imakefile                             ~ x11-ssh-askpass.c

  > updated patch by reyk@: no need to check for invalid screen dimensions.
  > This is a bug^Wfeature of the radeon driver. (matthieu@)

== xc-old ============================================================ 02/02 ==

  http://www.openbsd.org/cgi-bin/cvsweb/X11/xc-old

xc-old

  ~ programs/Xserver/dbe/dbe.c            

  > CVE 2006-6102 & CVE 2006-6103: integer overflows in dbe extension
  > (iDefense) (matthieu@)

===============================================================================



More information about the owc mailing list