version 1.18, 2007/03/17 21:09:36 |
version 1.19, 2007/04/04 14:17:02 |
|
|
<a name="zaurus"></a> |
<a name="zaurus"></a> |
<ul> |
<ul> |
|
|
|
<li><a name="021_xorg"</a> |
|
<font color="#009000"><strong>021: SECURITY FIX: April 4, 2007</strong></font> <i>All architectures</i><br> |
|
Multiple vulnerabilities have been discovered in X.Org.<br> |
|
XC-MISC extension ProcXCMiscGetXIDList memory corruption vulnerability, |
|
BDFFont parsing integer overflow vulnerability, |
|
fonts.dir file parsing integer overflow vulnerability, |
|
multiple integer overflows in the XGetPixel() and XInitImage functions |
|
in ImUtil.c. |
|
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1003">CVE-2007-1003</a>, |
|
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1351">CVE-2007-1351</a>, |
|
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1352">CVE-2007-1352</a>, |
|
<a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1667">CVE-2007-1667</a>. |
|
<br> |
|
<a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.9/common/021_xorg.patch"> |
|
A source code patch exists which remedies this problem</a>.<br> |
|
<p> |
|
|
<li><a name="m_dup1"></a> |
<li><a name="m_dup1"></a> |
<font color="#009000"><strong>020: SECURITY FIX: March 7, 2007</strong></font> <i>All architectures</i><br> |
<font color="#009000"><strong>020: SECURITY FIX: March 7, 2007</strong></font> <i>All architectures</i><br> |
<strong>2nd revision, March 17, 2007</strong><br> |
<strong>2nd revision, March 17, 2007</strong><br> |