Commit Graph

3007 Commits

Author SHA1 Message Date
567dae0051 libva: update to 2.9.1 2020-11-03 15:25:29 +01:00
39f6c9b01a libinput: update to 1.16.3 2020-11-03 15:25:13 +01:00
c832d032cb xorg-libevdev: update to 1.10.0 2020-10-27 16:15:38 +01:00
726413dc1a libva: update to 2.9.0 2020-10-17 10:18:36 +02:00
Fredrik Rinnestam
91e22cb99c mesa3d: 20.2.1 2020-10-14 20:01:12 +02:00
f707bb3899 xorg-server: remove old patch 2020-10-14 14:37:31 +02:00
819ffac9e9 xkeyboard-config: update to 2.31 2020-10-12 12:59:27 +02:00
fcce1779c0 xorg-xcb-proto: update to 1.14.1 2020-10-09 14:40:40 +02:00
ca15ea2a14 libinput: update to 1.16.2 2020-10-09 14:40:15 +02:00
2b6c9903d2 mesa3d: update to 20.1.9 2020-10-01 10:34:31 +02:00
75c98aa3bf mesa3d: update to 20.1.8 2020-09-21 12:47:57 +02:00
e8f8f83d34 xorg-xf86-video-vesa: update to 2.5.0 2020-09-11 10:04:46 +02:00
af18a8b729 mesa3d: update to 20.1.7 2020-09-04 12:38:09 +02:00
Fredrik Rinnestam
6aa00ecd4e [notify] xorg-server: updated to 1.20.9. Fix for CVE-2020-14345
CVE-2020-14346, CVE-2020-14361, CVE-2020-14362

Multiple input validation failures in X server extensions
=========================================================

All theses issuses  can lead to local privileges elevation
on systems where the X server is running privileged.

* CVE-2020-14345 / ZDI CAN 11428 XkbSetNames Out-Of-Bounds Access

The handler for the XkbSetNames request does not validate the request
length before accessing its contents.

* CVE-2020-14346 / ZDI CAN 11429 XIChangeHierarchy Integer Underflow

An integer underflow exists in the handler for the XIChangeHierarchy
request.

* CVE-2020-14361 / ZDI CAN 11573 XkbSelectEvents Integer Underflow

An integer underflow exist in the handler for the XkbSelectEvents
request.

* CVE-2020-1436 / ZDI CAN 11574 XRecordRegisterClients Integer Underflow

An integer underflow exist in the handler for the CreateRegister
request of the X record extension.
2020-08-25 20:15:00 +02:00
Fredrik Rinnestam
2e1f373404 [notify] xorg-libx11: updated to 1.6.12. Fix for CVE-2020-14363
Double free in libX11 locale handling code
==========================================

CVE-2020-14363

There is an integer overflow and a double free vulnerability in the way
LibX11 handles locales. The integer overflow is a necessary precursor to
the double free.
2020-08-25 20:11:32 +02:00
10d6d12503 mesa3d: update to 20.1.6 2020-08-22 12:26:23 +02:00
2ce3a04717 libinput: update to 1.16.1 2020-08-13 11:19:36 +02:00
0abe77fbdb libinput: update to 1.16.0 2020-08-11 11:05:49 +02:00
Fredrik Rinnestam
f20f287065 mesa3d: 20.1.5 2020-08-09 10:14:16 +02:00
Fredrik Rinnestam
265e2c0022 xorg-font-alias: 1.0.4 2020-08-08 22:52:36 +02:00
Fredrik Rinnestam
32c8e8788c xorg-libx11: 1.6.11 2020-08-08 22:52:17 +02:00
Fredrik Rinnestam
3a026cd9c1 [notify] xorg-server: Fix for CVE-2020-14347.
X.Org security advisory: July 31, 2020

X Server Pixel Data Uninitialized Memory Information Disclosure
===============================================================

CVE-2020-14347

Allocation for pixmap data in AllocatePixmap() does not initialize the
memory in xserver, it leads to leak uninitialize heap memory to
clients. When the X server runs with elevated privileges.

This flaw can lead to ASLR bypass, which when combined with other
flaws (known/unknown) could lead to lead to privilege elevation in the
client.
2020-08-01 16:17:09 +02:00
Fredrik Rinnestam
7617936b6e [notify] xorg-libx11: 1.6.10. Fix for CVE-2020-14344
X.Org security advisory: July 31, 2020

Heap corruption in the X input method client in libX11
======================================================

CVE-2020-14344

The X Input Method (XIM) client implementation in libX11 has some
integer overflows and signed/unsigned comparison issues that can lead
to heap corruption when handling malformed messages from an input
method.
2020-07-31 22:48:49 +02:00
Fredrik Rinnestam
a5b9b1a161 mesa3d: 20.1.4 2020-07-23 17:40:43 +02:00
Danny Rawlins
b58931cf4d libglvnd: 1.3.1 -> 1.3.2 2020-07-22 08:52:46 +10:00
3c1e7930a3 xorg-libevdev: update to 1.9.1 2020-07-20 15:24:46 +02:00
4d44e58738 xorg-xev: update to 1.2.4 2020-07-19 10:30:32 +02:00
Fredrik Rinnestam
659618a723 mesa3d: 20.1.3 2020-07-08 23:20:15 +02:00
Danny Rawlins
fbda46c5d8 [notify] libva: new dependency: libglvnd 2020-07-02 20:31:58 +10:00
d7d4e2b465 xkeyboard-config: update to 2.30 2020-07-01 17:24:40 +02:00
9cf96e4b41 libva: update to 2.8.0 2020-07-01 17:09:52 +02:00
bc1b0a847a mesa3d: update to 20.1.2 2020-06-25 11:42:06 +02:00
d47d16f099 libpthread-stubs: updated homepage URL to use HTTPS 2020-06-24 16:17:25 -05:00
dc5e679781 libinput: update to 1.15.6 2020-06-22 13:32:40 +02:00
9a4a1e6e19 Updated a bunch of homepage URLs to their proper HTTPS counterparts 2020-06-18 20:33:08 -05:00
a1273c70b3 libvdpau: updated homepage URL 2020-06-18 20:24:47 -05:00
142429ba83 libinput: updated homepage URL 2020-06-18 20:22:25 -05:00
Danny Rawlins
585d2498ac mesa3d: 20.1.0 -> 20.1.1 2020-06-11 23:13:46 +10:00
Fredrik Rinnestam
29a3aad520 mesa3d: 20.1.0 2020-06-03 22:41:18 +02:00
25dc4a805b xorg-xf86-video-intel: update to 2.99.917-909 2020-05-30 13:10:20 +02:00
453e3c097b mtdev: update to 1.1.6 2020-05-27 15:17:08 +02:00
da27d72b96 libdrm: update to 2.4.102 2020-05-27 12:00:19 +02:00
5ec5895296 xorg-xf86-input-libinput: update to 0.30.0 2020-05-19 12:45:27 +02:00
Fredrik Rinnestam
0faa0f7024 mesa3d: 20.0.7 2020-05-14 21:53:53 +02:00
6dc719486a mesa3d: update to 20.0.6 2020-04-30 13:27:17 +02:00
Danny Rawlins
382c7075d0 libvdpau: 1.3 -> 1.4 2020-04-25 23:09:43 +10:00
Danny Rawlins
40a6ecc8c7 libva: 2.7.0 -> 2.7.1 2020-04-25 22:54:14 +10:00
49c64fcd4b mesa3d: update to 20.0.5 2020-04-23 13:21:28 +02:00
e47ee25688 xorg-libpixman: update to 0.40.0 2020-04-21 18:21:43 +02:00
Danny Rawlins
a7e2bb76a9 libva: 2.6.1 -> 2.7.0 2020-04-16 20:20:25 +10:00