lp:ubuntu/edgy-updates/xorg-server

Created by James Westby and last modified
Get this branch:
bzr branch lp:ubuntu/edgy-updates/xorg-server
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Development

Recent revisions

40. By Kees Cook

* SECURITY UPDATE: multiple memory corruption flaws.
* Re-applied security patches from 1:1.1.1-0ubuntu12.3.
* Updated fix_CVE-2007-6429.patch: upstream fixes for bbp < 8
  crash regressions.
* References
  http://gitweb.freedesktop.org/?p=xorg/xserver.git;a=commitdiff;h=e9fa7c1c88a8130a48f772c92b186b8b777986b5

39. By Timo Aaltonen

Revert previous security update since it causes severe regressions.
(LP: #183969)

38. By Kees Cook

* SECURITY UPDATE: multiple memory corruption flaws.
* Added fix_CVE-2007-5958.patch: upstream fix from Matthieu Herrb.
* Added fix_CVE-2007-5760.patch: backported upstream fixes
  (bbde5b62a137ba726a747b838d81e92d72c1b42b) for XFree86 Misc extension out
  of bounds array index.
* Added fix_CVE-2007-6427.patch: backported upstream fixes
  (dd5e0f5cd5f3a87fee86d99c073ffa7cf89b0a27) for Xinput extension memory
  corruption.
* Added fix_CVE-2007-6428.patch: backported upstream fixes
  (7dc1717ff0f96b99271a912b8948dfce5164d5ad) for TOG-cup extension memory
  corruption.
* Added fix_CVE-2007-6429.patch: backported upstream fixes
  (6de61f82728df22ea01f9659df6581b87f33f11d) for MIT-SHM and EVI extensions
  integer overflows.
* Added fix_CVE-2008-0006.patch: backported upstream fixes
  (8e133d96740d010a4fd969a8188e6e71fb2cafe2) for PCF Font parser buffer
  overflow.

37. By Kees Cook

* SECURITY UPDATE: arbitrary code execution with root privileges via
  integer overflows in MISC-XC
* Add debian/patches/131_misc_xc_overflows.patch: upstream fixes.
* References
  CVE-2007-1003

36. By Kees Cook

* SECURITY UPDATE: Arbitrary code execution with root privileges via heap
  overflows in DBE and Render extensions.
* Add 'debian/patches/021_ubuntu_dbe-render_overflows.diff' from
  upstream
* References
  CVE-2006-6101 CVE-2006-6102 CVE-2006-6103

35. By Sebastien Bacher

* debian/patches/17_no_composite_for_xvfb.patch:
  - fix a crasher by not using composite for Xvfb when using -render
* debian/patches/18_no_composite_for_xvfb_run.patch:
  - use "-extension Composite" to fix xvfb-run crashing

34. By Ryan Lortie <email address hidden>

debian/patches/16_only_switch_vt_when_active.patch:
Add a check to prevent the X server from changing the VT when killing
GDM from the console.

33. By Tollef Fog Heen

Build xserver-xephyr from xorg-server package. Malone: #57077, #57084

32. By Matthew Garrett <email address hidden>

* Enable composite extension by default
* Add patch from fd.o bugzilla #7916 to avoid aiglx hangs on vt
  switches

31. By Matthew Garrett <email address hidden>

Steal patch from Fedora to allow compiz to trigger the disabling of
XAA off-screen pixmaps

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/lucid/xorg-server
This branch contains Public information 
Everyone can see this information.

Subscribers