-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 03 Oct 2023 11:01:59 +0200 Source: libx11 Binary: libx11-6 libx11-6-dbgsym libx11-6-udeb libx11-dev libx11-xcb-dev libx11-xcb1 libx11-xcb1-dbgsym Architecture: mips64el Version: 2:1.7.2-1+deb11u2 Distribution: bullseye-security Urgency: medium Maintainer: mipsel Build Daemon (mipsel-osuosl-04) Changed-By: Julien Cristau Description: libx11-6 - X11 client-side library libx11-6-udeb - X11 client-side library (udeb) libx11-dev - X11 client-side library (development headers) libx11-xcb-dev - Xlib/XCB interface library (development headers) libx11-xcb1 - Xlib/XCB interface library Changes: libx11 (2:1.7.2-1+deb11u2) bullseye-security; urgency=medium . * CVE-2023-43785: out-of-bounds memory access in _XkbReadKeySyms() * CVE-2023-43786: stack exhaustion from infinite recursion in PutSubImage() * CVE-2023-43787: integer overflow in XCreateImage() leading to a heap overflow * XPutImage: clip images to maximum height & width allowed by protocol * XCreatePixmap: trigger BadValue error for out-of-range dimensions Checksums-Sha1: fbcd59907300ce1c4f5da4b252a9bbacfa6dcdf4 1144372 libx11-6-dbgsym_1.7.2-1+deb11u2_mips64el.deb 21260918c2b1c4164cc46dfcff75ddca9e9b2b2f 521320 libx11-6-udeb_1.7.2-1+deb11u2_mips64el.udeb a570c3edee623283646cf5521a3eeb6e47de1e34 726780 libx11-6_1.7.2-1+deb11u2_mips64el.deb 04fba3d960f7b89b3c5b9ca33df129f7fac66330 859044 libx11-dev_1.7.2-1+deb11u2_mips64el.deb 7f9b4968a1d6e90076060d4fecc1c7136ed18a17 205860 libx11-xcb-dev_1.7.2-1+deb11u2_mips64el.deb b0becdff329dbbe303dc73d7b35c8b55366c33b0 16904 libx11-xcb1-dbgsym_1.7.2-1+deb11u2_mips64el.deb 20c663b4d884fd326094d78fedffcbb758dd6f22 203508 libx11-xcb1_1.7.2-1+deb11u2_mips64el.deb fb287024bc7005e76f791432f5203a1844dfe084 7991 libx11_1.7.2-1+deb11u2_mips64el-buildd.buildinfo Checksums-Sha256: b9d0e39320ef5e1b1517249c81edaf3358755c5ded8985c7c1425f467f2a2d90 1144372 libx11-6-dbgsym_1.7.2-1+deb11u2_mips64el.deb ae1aeef5ceb05934d94efdd063ebd3fd6ba3a45bba7254a5ed5481249d00de52 521320 libx11-6-udeb_1.7.2-1+deb11u2_mips64el.udeb a53877419f6f73c5e37bb8a6182a3f36b3b5d59e6eb94b93fce78ec32152f3c0 726780 libx11-6_1.7.2-1+deb11u2_mips64el.deb 610d2ca102821ef6f532676af48c3ef7974dc23517800186531ffe5bdc890df8 859044 libx11-dev_1.7.2-1+deb11u2_mips64el.deb f5e5342d7d45e231bfdbd4d600e330c359983e5d8950e86feab7a2d99e218dd8 205860 libx11-xcb-dev_1.7.2-1+deb11u2_mips64el.deb 482a7a5ee9dc4d2b489e948ed3298546738f684de98e12bc1c2570757d695c67 16904 libx11-xcb1-dbgsym_1.7.2-1+deb11u2_mips64el.deb 05bb3b0af8204cd4b0f8651300a418e99a4ccf2efe200ecb30d408d113269da9 203508 libx11-xcb1_1.7.2-1+deb11u2_mips64el.deb 05c664dfde5294e898bc771478d37aab24b5514d367be64ac46407d126f2850a 7991 libx11_1.7.2-1+deb11u2_mips64el-buildd.buildinfo Files: 3adcc806838f9a96ffe3ee201fd42444 1144372 debug optional libx11-6-dbgsym_1.7.2-1+deb11u2_mips64el.deb d869f4203f5e5f7e9952a7455231cc18 521320 debian-installer optional libx11-6-udeb_1.7.2-1+deb11u2_mips64el.udeb 00c59f5ee544264d7489ce602c044b57 726780 libs optional libx11-6_1.7.2-1+deb11u2_mips64el.deb 5720b42bb71112a6e90f47e429124ee0 859044 libdevel optional libx11-dev_1.7.2-1+deb11u2_mips64el.deb 5179ccc620d0ca9f48643053cabeff86 205860 libdevel optional libx11-xcb-dev_1.7.2-1+deb11u2_mips64el.deb bc3e015e4bd1998ccad0df2eef1b123a 16904 debug optional libx11-xcb1-dbgsym_1.7.2-1+deb11u2_mips64el.deb fa4c6c4efb9acfa54485cca922e2eae8 203508 libs optional libx11-xcb1_1.7.2-1+deb11u2_mips64el.deb fc099905197ecdbb9c95b6579da49402 7991 x11 optional libx11_1.7.2-1+deb11u2_mips64el-buildd.buildinfo Package-Type: udeb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEbqxhtqqT8knLtgp0Ct/wWqReXfQFAmUb4JQACgkQCt/wWqRe XfQBTBAAmrcAsJerlgi1l80BU2DCTbSj76almHTQj5xzaLc9sLCMsRpZ1idtYdB5 P3zNk+tr6z/43lxQ8bHioo7eFFbt/Wf3JX4Bn9cd8XsIvQYaU4D4YDT2vgBl0r5D bLK0miC+bYEzNBD+bjyh/ULQTxIhID1J1WAjGAqLvrLupSnWSDBIwKVfHxcR8+no NFxewfb0c/XLfw4qEJ4xiADmMZHMbpu4QGCNxsYcga0aBzi0P2hISf3w2Lxybgz2 PKQN3geL6ya+FoWUPv0wZl40azfeLE8hs61jx77j7fS9X9qhfmsFKE7hN7dTHosw T5TjMtx1KgxeW7i2k1x4lNQDM4Eo5tsSm33KDtFYg8VJIoyrAzgdyWHR1gjOtlTp KqwKON7bmZ8T9ELnaXgG+rtMK88m6zvXfkT/ahJTKrf/Tkh4Yin8KEvdXkNok2h4 2tTSjm3H6K05wtCrECfWDizwDRpWkGgmCYjQjfsHh/YyxkOb0aud6qSHH0OX7Qd/ R/oYMIPphNmhSZ32Dll0SHzdUwQMRzOFR9k3IXcOLrvqTXvmY4L6Pj+h3KrC4Ait tPzajxHb17JTKt5SaMel1A1s39OO8wRC1vmd9KdnOCVMzQOpySPPi26ERUvDEAHe NmDmJHrJxt4sxRfPiN5zoqiSA/6smOIuABgxffm/CLxGSgKo27E= =/6fh -----END PGP SIGNATURE-----