-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Fri, 18 Jan 2008 02:57:22 +0100 Source: xorg-server Binary: xserver-xephyr xprint xserver-xorg-core xvfb xserver-xorg-dev xdmx xprint-common xdmx-tools xserver-xorg-core-dbg xnest Architecture: source all i386 Version: 2:1.3.0.0.dfsg-12lenny2 Distribution: testing-security Urgency: high Maintainer: Debian X Strike Force <debian-x@lists.debian.org> Changed-By: Julien Cristau <jcristau@debian.org> Description: xdmx - Distributed Multihead X server xdmx-tools - Distributed Multihead X tools xnest - Nested X server xprint - Xprint - the X11 print system (binary) xprint-common - Xprint - the X11 print system (configuration files) xserver-xephyr - Next Generation Nested X Server xserver-xorg-core - X.Org X server -- core server xserver-xorg-core-dbg - Xorg - the X.Org X server (debugging symbols) xserver-xorg-dev - X.Org X server -- development files xvfb - Virtual Framebuffer 'fake' X server Changes: xorg-server (2:1.3.0.0.dfsg-12lenny2) testing-security; urgency=high . * Security update, fixes multiple vulnerabilities + CVE-2007-5760: XFree86-Misc Extension Invalid Array Index (fd.o bug#13524) + CVE-2007-5958: file existence disclosure (fd.o bug#13706) + CVE-2007-6427: XInput Extension Memory Corruption (fd.o bug#13522) + CVE-2007-6428: TOG-CUP Extension Memory Corruption (fd.o bug#13523) + CVE-2007-6429: EVI Extension Integer Overflow (fd.o bug#13519), MIT-SHM Extension Integer Overflow (fd.o bug#13520) + CVE-2008-0006: PCF font parser buffer overflow (fd.o bug#13526) Files: 3730163c388c899fecfa08224cf67ec4 2336 x11 optional xorg-server_1.3.0.0.dfsg-12lenny2.dsc d2396efadc99e027379b5f871b7aadac 642657 x11 optional xorg-server_1.3.0.0.dfsg-12lenny2.diff.gz 79522d520ad10efa62e6dc00a5159a4c 264154 x11 optional xprint-common_1.3.0.0.dfsg-12lenny2_all.deb a1815b4d7327d867b8aff426158851ee 3599958 x11 optional xserver-xorg-core_1.3.0.0.dfsg-12lenny2_i386.deb 993147275f6a06e0c0d0e6f8a21d6cff 312482 x11 optional xserver-xorg-dev_1.3.0.0.dfsg-12lenny2_i386.deb 0d857c5c133818f84962badbc728d5ee 802590 x11 optional xdmx_1.3.0.0.dfsg-12lenny2_i386.deb 90eb2764eb14cf9c90d72cbba9704f8f 85214 x11 optional xdmx-tools_1.3.0.0.dfsg-12lenny2_i386.deb 9f92602510f0a3522f0764c691769908 1383144 x11 optional xnest_1.3.0.0.dfsg-12lenny2_i386.deb 0831580cc32930768082b64fc312b091 1532534 x11 optional xvfb_1.3.0.0.dfsg-12lenny2_i386.deb ceaa8675cccf065559e633d9092d4ec3 1561228 x11 optional xserver-xephyr_1.3.0.0.dfsg-12lenny2_i386.deb 2c71483339340b06cd521bab49177cb3 1603120 x11 optional xprint_1.3.0.0.dfsg-12lenny2_i386.deb 03e776adae32688f56f56654fc35acac 12037182 x11 extra xserver-xorg-core-dbg_1.3.0.0.dfsg-12lenny2_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFHkUy4mEvTgKxfcAwRAp/rAJoCU3jeOBJejoPl+KapibSSEtI2bQCggGf+ gukmBnv696Bmpa8gWNVHjQY= =8jGp -----END PGP SIGNATURE----- Accepted: xdmx-tools_1.3.0.0.dfsg-12lenny2_i386.deb to pool/main/x/xorg-server/xdmx-tools_1.3.0.0.dfsg-12lenny2_i386.deb xdmx_1.3.0.0.dfsg-12lenny2_i386.deb to pool/main/x/xorg-server/xdmx_1.3.0.0.dfsg-12lenny2_i386.deb xnest_1.3.0.0.dfsg-12lenny2_i386.deb to pool/main/x/xorg-server/xnest_1.3.0.0.dfsg-12lenny2_i386.deb xorg-server_1.3.0.0.dfsg-12lenny2.diff.gz to pool/main/x/xorg-server/xorg-server_1.3.0.0.dfsg-12lenny2.diff.gz xorg-server_1.3.0.0.dfsg-12lenny2.dsc to pool/main/x/xorg-server/xorg-server_1.3.0.0.dfsg-12lenny2.dsc xprint-common_1.3.0.0.dfsg-12lenny2_all.deb to pool/main/x/xorg-server/xprint-common_1.3.0.0.dfsg-12lenny2_all.deb xprint_1.3.0.0.dfsg-12lenny2_i386.deb to pool/main/x/xorg-server/xprint_1.3.0.0.dfsg-12lenny2_i386.deb xserver-xephyr_1.3.0.0.dfsg-12lenny2_i386.deb to pool/main/x/xorg-server/xserver-xephyr_1.3.0.0.dfsg-12lenny2_i386.deb xserver-xorg-core-dbg_1.3.0.0.dfsg-12lenny2_i386.deb to pool/main/x/xorg-server/xserver-xorg-core-dbg_1.3.0.0.dfsg-12lenny2_i386.deb xserver-xorg-core_1.3.0.0.dfsg-12lenny2_i386.deb to pool/main/x/xorg-server/xserver-xorg-core_1.3.0.0.dfsg-12lenny2_i386.deb xserver-xorg-dev_1.3.0.0.dfsg-12lenny2_i386.deb to pool/main/x/xorg-server/xserver-xorg-dev_1.3.0.0.dfsg-12lenny2_i386.deb xvfb_1.3.0.0.dfsg-12lenny2_i386.deb to pool/main/x/xorg-server/xvfb_1.3.0.0.dfsg-12lenny2_i386.deb