=================================================================== RCS file: /cvsrepo/anoncvs/cvs/www/errata63.html,v retrieving revision 1.19 retrieving revision 1.20 diff -c -r1.19 -r1.20 *** www/errata63.html 2018/10/09 15:12:03 1.19 --- www/errata63.html 2018/10/25 23:17:08 1.20 *************** *** 315,320 **** --- 315,334 ---- A source code patch exists which remedies this problem.

+

  • + + 020: SECURITY FIX: October 25, 2018 +   All architectures +
    + The Xorg X server incorrectly validates certain options, allowing arbitrary + files to be overwritten. + As an immediate (temporary) workaround, the Xorg binary can be disabled + by running: chmod u-s /usr/X11R6/bin/Xorg +
    + + A source code patch exists which remedies this problem. +

    +