-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 03 Oct 2023 11:01:59 +0200 Source: libx11 Binary: libx11-6 libx11-6-dbgsym libx11-6-udeb libx11-dev libx11-xcb-dev libx11-xcb1 libx11-xcb1-dbgsym Architecture: mipsel Version: 2:1.7.2-1+deb11u2 Distribution: bullseye-security Urgency: medium Maintainer: mipsel Build Daemon (mipsel-osuosl-05) Changed-By: Julien Cristau Description: libx11-6 - X11 client-side library libx11-6-udeb - X11 client-side library (udeb) libx11-dev - X11 client-side library (development headers) libx11-xcb-dev - Xlib/XCB interface library (development headers) libx11-xcb1 - Xlib/XCB interface library Changes: libx11 (2:1.7.2-1+deb11u2) bullseye-security; urgency=medium . * CVE-2023-43785: out-of-bounds memory access in _XkbReadKeySyms() * CVE-2023-43786: stack exhaustion from infinite recursion in PutSubImage() * CVE-2023-43787: integer overflow in XCreateImage() leading to a heap overflow * XPutImage: clip images to maximum height & width allowed by protocol * XCreatePixmap: trigger BadValue error for out-of-range dimensions Checksums-Sha1: b2a13bc08e21f7ee72629e4e2819ab4b23d65841 1091668 libx11-6-dbgsym_1.7.2-1+deb11u2_mipsel.deb fefdf2e2fe4238d9f1576dfdff182cd0ab3b9763 520776 libx11-6-udeb_1.7.2-1+deb11u2_mipsel.udeb 0e353ecba6b3b1546c5f53639dbdf40ccca7aaf5 725272 libx11-6_1.7.2-1+deb11u2_mipsel.deb 78f8018683faa45340c865c4b1b1e9c1c9d9f0b9 840764 libx11-dev_1.7.2-1+deb11u2_mipsel.deb 1995e71b99c3992147b8af78a7511dbf0d85085c 205832 libx11-xcb-dev_1.7.2-1+deb11u2_mipsel.deb 9c402759d45d7759a8344a97ff0b766b21a7b5e7 16876 libx11-xcb1-dbgsym_1.7.2-1+deb11u2_mipsel.deb be231c88e5caa135a4a76c1031ce61832928dce0 203416 libx11-xcb1_1.7.2-1+deb11u2_mipsel.deb 546d87a9358cd9adc34c94ca7e85de9ca8ceb16b 7938 libx11_1.7.2-1+deb11u2_mipsel-buildd.buildinfo Checksums-Sha256: 00fbfb3a00445ccafd2a8aaac3292838514ad55202a3a3b5843361c97be93103 1091668 libx11-6-dbgsym_1.7.2-1+deb11u2_mipsel.deb 059ec87ceff21774f969ddc6851cecf650676b1f3ea60db41620c25dbece0421 520776 libx11-6-udeb_1.7.2-1+deb11u2_mipsel.udeb f3461f69748cfb0b32f79896f41dfcafd74b3cab417a9520cdd2e1e1d6a710a2 725272 libx11-6_1.7.2-1+deb11u2_mipsel.deb 84c58275936ab8a913f694c3515ff1bd93c4eda7ba157f5e53a2621a7caf512c 840764 libx11-dev_1.7.2-1+deb11u2_mipsel.deb 149ab612e979c12d2b96a5b795289a189826d9bd1b03ed83ff472ab5f455f273 205832 libx11-xcb-dev_1.7.2-1+deb11u2_mipsel.deb 33b2bbe3b94a3ca8e2c2d2668454c6d2f39b05bd1cc3f81914e52c4e394e1002 16876 libx11-xcb1-dbgsym_1.7.2-1+deb11u2_mipsel.deb 7e5068489fe79ef9df4287886871aceae486e7f9215262391e6857d1b84a117e 203416 libx11-xcb1_1.7.2-1+deb11u2_mipsel.deb 53608248c80f8116a68ab4067b3c9bf3423a45f886fb46f412161b92a55e1c06 7938 libx11_1.7.2-1+deb11u2_mipsel-buildd.buildinfo Files: b3a0266dae4bccd7cce6bf504aabf017 1091668 debug optional libx11-6-dbgsym_1.7.2-1+deb11u2_mipsel.deb 0b3f37700dd656a7f2f124410cd1c95d 520776 debian-installer optional libx11-6-udeb_1.7.2-1+deb11u2_mipsel.udeb 6509cc53718db3bbd33234262f57fa13 725272 libs optional libx11-6_1.7.2-1+deb11u2_mipsel.deb 58185069e0b76d85efaa65b3449ba021 840764 libdevel optional libx11-dev_1.7.2-1+deb11u2_mipsel.deb 610d186c6b22d61ecc66a3ff1e4976a5 205832 libdevel optional libx11-xcb-dev_1.7.2-1+deb11u2_mipsel.deb 11d59032941570bd60b7d35ec17dd4ba 16876 debug optional libx11-xcb1-dbgsym_1.7.2-1+deb11u2_mipsel.deb 017b913f786d09ea3a6ab5a4e5c86bb3 203416 libs optional libx11-xcb1_1.7.2-1+deb11u2_mipsel.deb caa21d24df532d0c1862f274c11d5cc0 7938 x11 optional libx11_1.7.2-1+deb11u2_mipsel-buildd.buildinfo Package-Type: udeb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE7FUbSrfgk+qhJhySoQbzkdO+xGgFAmUb36sACgkQoQbzkdO+ xGgZcQ//cWkN9LDt5mbGPq4k+ANFgOyb8D0Liyi1kUZU4rZVKBtpu17ZJ77/wUW8 pqwaBwHmFQVWNOlHUJw4+fyXqhKx1lCizXU4M46P2ATffCwBCdEiAJRpkjitSWAO G0lQ20eXclFyeUiyV6Dt4tbkPW1NCQ1FtqohebMvW4KAqQLWWGbY+wWNdH5A8OVU 4oyZvGN/FzROVqEun94BumoZWnh3Srw3qlhHVTJy8WKRUBb6lU3SJ3IWKfoSL5CH NBcxY2WsFZXtpRvVaeTNsL99Zml58q9NzjD2HU4mM9NZMV9lQlNBQe/MtWDvKvFW 7PO+sqDBKNhvLSAshmcLTfDt2uNbndfMEeKQHtBw3+UZdNv7tbxnPzsqY75HQVbW 7KMSA6HUEC91n/n8BeiP3iHjn5S/ofrs2ezTgLKwYAA2BpCic6dZYP0132zGI3Jk c3+XsERgJ50m0g5/HLECg4RE4uUiVvidRlNoRFcl/hRFOaw+E47+n9HWKBtWpPRd 0/HK0LvWGY3fUdd+ihfrMLqd6De19eAoxBeqEME10IofFI5t3gqa5KsxZN97pnnD VwDpUNUxNcda0NKle8f3HocEgWqmHv8dzS4lYc10hSlJHNKjFZCZsbvgpW29OSOz KuONc6CxfSt+zMHJJ6cufV0gYKiJ8RRvxafDKmSAk7r51AgbdM4= =aQIu -----END PGP SIGNATURE-----