Diff for "Development/Security"

Differences between revisions 48 and 49
Revision 48 as of 2012-03-31 01:20:09
Size: 11942
Comment: Add CVE-2012-0064 (input grab keys)
Revision 49 as of 2012-07-24 15:44:39
Size: 12583
Comment: Add CVE-2012-1699 (xfs DoS/leak prior to X11R6.7/XFree86 3.3.3)
Deletions are marked like this. Additions are marked like this.
Line 17: Line 17:
 * Oct 18, 2011 - 2 vulnerabilities related to X server lock files:   * Oct 18, 2011 - 2 vulnerabilities related to X server lock files:
Line 125: Line 125:

== X11R6.6 and older ==

''This is not a complete listing of older security issues, just those discovered more recently''

 * July 24, 2012 - CVE-2012-1699: A vulnerability has been found in the X11''''''R6 font server code in the handling of the Set''''''Event''''''Mask request in xfs which can lead to either denial of service or a leak of information from the xfs process address space.

 Please see [[http://lists.freedesktop.org/archives/xorg-announce/2012-July/002040.html|the advisory]] for more information.

 Patch is included in the advisory.

 Fix is included in XFree86 3.3.3 and later, and X.Org X11R6.7 and later.

Security Advisories

This page details security issues that have been found in X.Org, and their remedies.

Please contact <xorg-security@lists.x.org> to report security issues in the X.Org codebase.

X.Org 7.6

X.Org 7.3

X.Org 7.2

X.Org 7.1

X.Org 6.9.0/7.0

X.Org 6.8.2

X.Org 6.8.1

X.Org 6.8.0

X11R6.6 and older

This is not a complete listing of older security issues, just those discovered more recently