Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2012-0303

Опубликовано: 01 мар. 2012
Источник: oracle-oval
Платформа: Oracle Linux 5

Описание

ELSA-2012-0303: xorg-x11-server security and bug fix update (LOW)

[1.1.1-48.90.0.1.el5]

  • Added oracle-enterprise-detect.patch
  • Replaced 'Red Hat' in spec file

[1.1.1-48.90]

  • cve-2011-4028.patch: File existence disclosure vulnerability.

[1.1.1-48.88]

  • cve-2011-4818.patch: Multiple input sanitization flaws in Render and GLX
  • xorg-x11-server-1.1.0-mesa-copy-sub-buffer.patch: Likewise.

[1.1.1-48.87]

  • xserver-1.1.1-fbdev-iterate-modes.patch: fix fbdev driver not iterating across all modes of a certain dimension (#740497)

[1.1.1-48.86]

  • xserver-1.1.1-midc-double-free.patch: Don't double-free the picture for the root window when using the mi (software) cursor path. (#674741)

[1.1.1-48.85]

  • xserver-1.1.1-bigreqs-buffer-size.patch: Fix BIG-REQUESTS buffer size (#555000)

[1.1.1-48.84]

  • xserver-1.1.1-xinerama-crash.patch: Fix a crash in XineramaQueryScreens when client is swapped (#588346)

[1.1.1-48.83]

  • xserver-1.1.1-xephyr-keymap.patch: Fix types in Xephyr keymap setup (#454409)

[1.1.1-48.82]

  • xserver-1.1.1-wideline-overflow.patch: Fix integer overflow in wide line renderer (#649810)

[1.1.1-48.81]

  • Fix mouse stuck on edge (#529717)

[1.1.1-48.80]

  • xserver-1.1.1-bs-crash.patch: Fix a crash in backing store. (#676270)

[1.1.1-48.79]

  • xserver-1.1.1-randr-fix-mouse-crossing.patch: fix zaphod mouse crossing (#559964)

[1.1.1-48.78]

  • cve-2010-1166.patch: Fix broken modulo math in Render and arc code. Identical to xserver-1.1.1-mod-macro-parens.patch in 5.5.z. (#582651)

[1.1.1-48.77]

  • xserver-1.1.1-dbe-validate-gc.patch: Validate the GC against both front and back buffers (#596899)

Обновленные пакеты

Oracle Linux 5

Oracle Linux ia64

xorg-x11-server-Xdmx

1.1.1-48.90.0.1.el5

xorg-x11-server-Xephyr

1.1.1-48.90.0.1.el5

xorg-x11-server-Xnest

1.1.1-48.90.0.1.el5

xorg-x11-server-Xorg

1.1.1-48.90.0.1.el5

xorg-x11-server-Xvfb

1.1.1-48.90.0.1.el5

xorg-x11-server-Xvnc-source

1.1.1-48.90.0.1.el5

xorg-x11-server-sdk

1.1.1-48.90.0.1.el5

Oracle Linux x86_64

xorg-x11-server-Xdmx

1.1.1-48.90.0.1.el5

xorg-x11-server-Xephyr

1.1.1-48.90.0.1.el5

xorg-x11-server-Xnest

1.1.1-48.90.0.1.el5

xorg-x11-server-Xorg

1.1.1-48.90.0.1.el5

xorg-x11-server-Xvfb

1.1.1-48.90.0.1.el5

xorg-x11-server-Xvnc-source

1.1.1-48.90.0.1.el5

xorg-x11-server-sdk

1.1.1-48.90.0.1.el5

Oracle Linux i386

xorg-x11-server-Xdmx

1.1.1-48.90.0.1.el5

xorg-x11-server-Xephyr

1.1.1-48.90.0.1.el5

xorg-x11-server-Xnest

1.1.1-48.90.0.1.el5

xorg-x11-server-Xorg

1.1.1-48.90.0.1.el5

xorg-x11-server-Xvfb

1.1.1-48.90.0.1.el5

xorg-x11-server-Xvnc-source

1.1.1-48.90.0.1.el5

xorg-x11-server-sdk

1.1.1-48.90.0.1.el5

Связанные CVE

Связанные уязвимости

ubuntu
почти 13 лет назад

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.

redhat
больше 13 лет назад

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.

nvd
почти 13 лет назад

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.

debian
почти 13 лет назад

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 a ...

github
около 3 лет назад

The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to determine the existence of arbitrary files via a symlink attack on a temporary lock file, which is handled differently if the file exists.