-
Committer:
Package Import Robot
-
Author(s):
Marc Deslauriers
-
Date:
2013-06-05 15:41:47 UTC
-
mfrom:
(0.1.24 lucid)
-
Revision ID:
package-import@ubuntu.com-20130605154147-2fs59u034h4dfhhk
Tags: 2:1.6.99.1-0ubuntu4
* SECURITY UPDATE: denial of service and possible code execution via
incorrect memory size calculations
- debian/patches/CVE-2013-1984.patch: fix multiple integer overflows.
- CVE-2013-1984
* SECURITY UPDATE: denial of service and possible code execution via
incorrect memory size calculations from signedness issues
- debian/patches/CVE-2013-1995.patch: fix signedness issues in
src/XListDev.c.
- CVE-2013-1995
* SECURITY UPDATE: denial of service and possible code execution via
incorrect length and bounds checking
- debian/patches/CVE-2013-1998.patch: properly check lengths and
indexes in src/XGetBMap.c, src/XIPassiveGrab.c, src/XQueryDv.c.
- CVE-2013-1998