-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 15 May 2013 19:35:47 +0200 Source: libxxf86vm Binary: libxxf86vm1 libxxf86vm1-dbg libxxf86vm-dev Architecture: source amd64 Version: 1:1.1.2-1+deb7u1 Distribution: wheezy-security Urgency: high Maintainer: Debian X Strike Force <debian-x@lists.debian.org> Changed-By: Julien Cristau <jcristau@debian.org> Description: libxxf86vm-dev - X11 XFree86 video mode extension library (development headers) libxxf86vm1 - X11 XFree86 video mode extension library libxxf86vm1-dbg - X11 XFree86 video mode extension library (debug package) Changes: libxxf86vm (1:1.1.2-1+deb7u1) wheezy-security; urgency=high . * When Xcalloc() returns NULL, you don't need to Xfree() it * Improve error handling in XF86VidModeGetMonitor() * Unlock display before returning alloc error in XF86VidModeGetModeLine(), XF86VidModeGetAllModeLines(), XF86VidModeGetDotClocks() * memory corruption in XF86VidModeGetGammaRamp() [CVE-2013-2001] * avoid integer overflow in XF86VidModeGetModeLine() Checksums-Sha1: 0b95a5c806c56425373638da0098f4a4ae6d92a7 2128 libxxf86vm_1.1.2-1+deb7u1.dsc 842f5d837c100e2ac8cb35feb13185cc5fb67bea 346676 libxxf86vm_1.1.2.orig.tar.gz e4214b882df64905b309f1aa4265ac39fd07159c 7091 libxxf86vm_1.1.2-1+deb7u1.diff.gz 1c7a5457ca41b6e8ea38debdefffcaa124891ed5 19542 libxxf86vm1_1.1.2-1+deb7u1_amd64.deb 094fe13473112acbb6ce953a69eb9df8e40de316 39624 libxxf86vm1-dbg_1.1.2-1+deb7u1_amd64.deb 9fce848009e6e17ab952ded8f3297d40005c0dcf 23848 libxxf86vm-dev_1.1.2-1+deb7u1_amd64.deb Checksums-Sha256: 5c75aa0be1d7b72b974a1901196f02e688c67fa6993fc49c7a563297596f5127 2128 libxxf86vm_1.1.2-1+deb7u1.dsc a19c1e743a21da2c7243b47354afd911f0dbb79d6ac8fe560da1846863c181f6 346676 libxxf86vm_1.1.2.orig.tar.gz babfe8b859ad2f1d9e8810d06039ce478e41c0b733fd27bccad5b23ed1d99389 7091 libxxf86vm_1.1.2-1+deb7u1.diff.gz f58ec166fdf422f15d0cc16646ff8c5f00d3e4d5852fb09c300658c6cb199798 19542 libxxf86vm1_1.1.2-1+deb7u1_amd64.deb 47eb512cf7f5a6bc113dd0963f13de3694fecd771c7618a3081241ad954354b6 39624 libxxf86vm1-dbg_1.1.2-1+deb7u1_amd64.deb 1ef919bd9be2bd5420df74a463fc06eae3fccf34cc8f876c0a9cdeeee19b4026 23848 libxxf86vm-dev_1.1.2-1+deb7u1_amd64.deb Files: 8a99735c65ef33b2c0984d80c9deda5e 2128 x11 optional libxxf86vm_1.1.2-1+deb7u1.dsc 84d26e26c07f8cbcb5f447590df5b5c3 346676 x11 optional libxxf86vm_1.1.2.orig.tar.gz 21b0239db9edbb69498ca3b9aaa45110 7091 x11 optional libxxf86vm_1.1.2-1+deb7u1.diff.gz 59d876c23a2070df62b1a24d82f2acbb 19542 libs optional libxxf86vm1_1.1.2-1+deb7u1_amd64.deb ca9f930d590fa83ec441644bf4044347 39624 debug extra libxxf86vm1-dbg_1.1.2-1+deb7u1_amd64.deb 2a7ecd127c9d602c95be02661f3bb152 23848 libdevel optional libxxf86vm-dev_1.1.2-1+deb7u1_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQIcBAEBCAAGBQJRk88CAAoJEDEBgAUJBeQMXWcQAOP8+nJGN43a0JPOvz9a1SLM g0XxKlbmDAXzYYN+mv1wMFVeqbkAk3R2IwN9wgvi96WUFFFPo37TJuFz8xk16JT4 PopMzyXmfiTIGWpkb0Cfis8+oSke4Ou6A7yUyLQcLtLYYGEowaefMo5xsKvLIxZv 3UMsMZX1CW2S9J9BwekPnAOkY0m/GdZoEpSN8MEzoa2ZeEd/TjUb014gpUt0UaCw vt2Ia4Yx3w0qd/SuLOmmlgunwL0sTXcc2Vd56tyrUXgkC60qJSJH8XSCEx6XQPAz f2pX0F82Kk3MP7U5lVTcXbfph0qpFO11uwWpuXr/b4dDlBR5vdyvOSce7B2z37c+ tBKngUvw2eF7ZTfoY0TadMnDBxEeS0rNFCuCht6uzRiEJ20eGLhWufCxWJTNN0t4 Gh/uq0F4OBmnOkOteb/kJ6znj8n1rXKLJ87UQsHRnaAUQtGCL6+a85pMPtIdqlcY t/XxOFEU+0sTsEZJfGaOh5gVeCvNOcrjiSMJjBRYruw1YhA3dWFtXWjosbR/jzHe vCpXnFZJwUabDACH2Xte3zbN+Q9X2yNDCPe3bbz31dsUge0oGlhCAYY47Rjcds5t c7LPgGrz8qzkjVZPPxYeDUXKKZ3LIV04FoA+/L3U1B58pvA6A3MFQrHwgz5f3aM6 jwMyt5N6Mf8uhJNsUc78 =x4Ks -----END PGP SIGNATURE-----