Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Slackware 15.0: 2023-299-02 Critical: Xorg-Server Out-Of-Bounds

slackware
Calendar Grey October 26, 2023
Dist Slackware Esm H88
The latest xorg-server updates for Slackware resolve significant security vulnerabilities, enhancing system integrity and performance post-installation.
New xorg-server packages are available for Slackware 15.0 and -current to fix security issues

Summary

Here are the details from the Slackware 15.0 ChangeLog: patches/packages/xorg-server-1.20.14-i586-9_slack15.0.txz: Rebuilt. This update fixes security issues: OOB write in XIChangeDeviceProperty/RRChangeOutputProperty. Use-after-free bug in DestroyWindow. For more information, see: https://lists.x.org/archives/xorg-announce/2023-October/003430.html https://www.cve.org/CVERecord?id=CVE-2023-5367 https://www.cve.org/CVERecord?id=CVE-2023-5380 (* Security fix *) patches/packages/xorg-server-xephyr-1.20.14-i586-9_slack15.0.txz: Rebuilt. patches/packages/xorg-server-xnest-1.20.14-i586-9_slack15.0.txz: Rebuilt. patches/packages/xorg-server-xvfb-1.20.14-i586-9_slack15.0.txz: Rebuilt. patches/packages/xorg-server-xwayland-21.1.4-i586-8_slack15.0.txz: Rebuilt. This update fixes a security issue: OOB write in XIChangeDeviceProperty/RRChangeOutputProperty. For more information, see: https://lists.x.org/archives/xorg-announce/2023-October/003430.html

Read the Full Advisory

Where Find New Packages

Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated packages for Slackware 15.0:
Updated packages for Slackware x86_64 15.0:
Updated packages for Slackware -current:
Updated packages for Slackware x86_64 -current:

MD5 Signatures

Slackware 15.0 packages: 323f754d385f509b1995ee2f13f06865 xorg-server-1.20.14-i586-9_slack15.0.txz b5161915f97533e595cbfdd48f5060f1 xorg-server-xephyr-1.20.14-i586-9_slack15.0.txz b55e66f4ae9f9961fbefcbdaba8e8e0b xorg-server-xnest-1.20.14-i586-9_slack15.0.txz e89ee6d8c6fb6ce55a6abf7ea82184bf xorg-server-xvfb-1.20.14-i586-9_slack15.0.txz c8c95bc22ed849c931b671aaf7b9a841 xorg-server-xwayland-21.1.4-i586-8_slack15.0.txz
Slackware x86_64 15.0 packages: f99ba1b65a5d139668cd8b5756468557 xorg-server-1.20.14-x86_64-9_slack15.0.txz 1b0968c85c757001c78723b11fdcc6a5 xorg-server-xephyr-1.20.14-x86_64-9_slack15.0.txz 68586e949d66e229ea63555dbc9347b5 xorg-server-xnest-1.20.14-x86_64-9_slack15.0.txz fed63de2e35e06e863d6f61b2ddf08c8 xorg-server-xvfb-1.20.14-x86_64-9_slack15.0.txz 5957cc46128fcac3c5b5b54bffc45180 xorg-server-xwayland-21.1.4-x86_64-8_slack15.0.txz
Slackware -current packages: df7e432806264d6bf1e88ae2ea9de557 x/xorg-server-21.1.9-i586-1.txz df99fbd9aef28b08d26121afcad5ebce x/xorg-server-xephyr-21.1.9-i586-1.txz a0dacd2b189dbd98f92608c79f12687c x/xorg-server-xnest-21.1.9-i586-1.txz d3c5c613e2f300d2196c114fd2f0fc99 x/xorg-server-xvfb-21.1.9-i586-1.txz 5702c7d521f03190643596b18b15c4cb x/xorg-server-xwayland-23.2.2-i586-1.txz
Slackware x86_64 -current packages: 9105fa7c44383e8ddb7dc86286551435 x/xorg-server-21.1.9-x86_64-1.txz c3962abc946bac2f70c40ac9c37c06ea x/xorg-server-xephyr-21.1.9-x86_64-1.txz 4011927923a55056290ab9623b504b9d x/xorg-server-xnest-21.1.9-x86_64-1.txz 4eceac09a6c165603b386db219fe0b83 x/xorg-server-xvfb-21.1.9-x86_64-1.txz f18c89e9f42b718161025e11706e8b0b x/xorg-server-xwayland-23.2.2-x86_64-1.txz

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Upgrade the packages as root: # upgradepkg xorg-server-*.txz

Related News

Your message here