[Bug 248409] x11/libX11: update to 1.6.10 - fixed CVE-2020-14344

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Sat Aug 1 14:25:06 UTC 2020


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=248409

--- Comment #4 from commit-hook at FreeBSD.org ---
A commit references this bug:

Author: zeising
Date: Sat Aug  1 14:24:03 UTC 2020
New revision: 543913
URL: https://svnweb.freebsd.org/changeset/ports/543913

Log:
  MFH: r543911 r543912

  x11-servers/xorg-server: Fix CVE-2020-14347

  Add upstream patch to fix CVE-2020-14347, Pixel Data Uninitialized Memory
  Information Disclosure.
  Announcement:
  https://lists.x.org/archives/xorg-announce/2020-July/003051.html

  PR:           248410 (based on)
  Submitted by: VVD
  Security:     3c7ba82a-d3fb-11ea-9aba-0c9d925bbbc0

  x11/libX11: Fix CVE-2020-14347

  Add upstream patches to x11/libX11 to fix Heap corruption in the X input
  method client in libX11.
  Announcement:
  https://lists.x.org/archives/xorg-announce/2020-July/003050.html

  PR:           248409 (based on)
  Submitted by: VVD
  Security:     6faa7feb-d3fa-11ea-9aba-0c9d925bbbc0

  Approved by:  ports-secteam (implicit, security update)

Changes:
_U  branches/2020Q3/
  branches/2020Q3/x11/libX11/Makefile
  branches/2020Q3/x11/libX11/distinfo
  branches/2020Q3/x11-servers/xorg-server/Makefile
  branches/2020Q3/x11-servers/xorg-server/distinfo

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-x11 mailing list