it-securitynotifies AT lists.piratenpartei.de
Betreff: Sicherheitsankündigungen
Listenarchiv
- From: Salvatore Bonaccorso <carnil AT debian.org>
- To: debian-security-announce AT lists.debian.org
- Subject: [IT-SecNots] [SECURITY] [DSA 5657-1] xorg-server security update
- Date: Fri, 12 Apr 2024 20:31:42 +0000
- List-archive: https://lists.debian.org/msgid-search/E1rvNYk-00906u-AL AT seger.debian.org
- List-id: <debian-security-announce.lists.debian.org>
- List-url: <http://lists.debian.org/debian-security-announce/>
- Old-dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org; s=smtpauto.seger; h=Date:Message-Id:Subject:To:From:Reply-To:Cc:MIME-Version: Content-Type:Content-Transfer-Encoding:Content-ID:Content-Description: In-Reply-To:References; bh=x8ZGSSuwls1ftizp8hFJodG4vii8FKLOhDCXTfFj24E=; b=m7 cWMDC2ImztoYcjQvULScaw+4lOuIPFZSkC+W/yxvU6m3o4yomFC2BN8TL9iFmx1vQhe5UTFMFNrYz MF6gaMNYFmine+3eqeXE4/6rjhiuKVfFtLwtFXVT9D4xLMwrtHYmp1da9imwuc4V8/LiQnmoZqI/x f1ZUjYyfdumyJ+wa5x9pkzh8n7uxXh/DRxDoe6dw1GR1MeegQEvLuJxXJUTesMzw3uC42e9eIsyK9 FqfPOw8yhx+1NXZkub1MVAL4TW3F2L/4lGeN8mY50tDQmSf5hcyCfV0U5OGQCrWrRMi5znLpUkwwf yYET/ZbFPJLcCji0kZ6umx1bzJ9hWVXQ==;
- Old-return-path: <carnil AT seger.debian.org>
- Priority: urgent
- Resent-date: Fri, 12 Apr 2024 20:32:08 +0000 (UTC)
- Resent-from: debian-security-announce AT lists.debian.org
- Resent-message-id: <l_L0J9JQRAO.A.reD.IpZGmB@bendel>
- Resent-sender: debian-security-announce-request AT lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
- -------------------------------------------------------------------------
Debian Security Advisory DSA-5657-1 security AT debian.org
https://www.debian.org/security/ Salvatore Bonaccorso
April 12, 2024 https://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : xorg-server
CVE ID : CVE-2024-31080 CVE-2024-31081 CVE-2024-31083
Several vulnerabilities were discovered in the Xorg X server, which may
result in privilege escalation if the X server is running privileged
or denial of service.
For the oldstable distribution (bullseye), these problems have been fixed
in version 2:1.20.11-1+deb11u13.
For the stable distribution (bookworm), these problems have been fixed in
version 2:21.1.7-3+deb12u7.
We recommend that you upgrade your xorg-server packages.
For the detailed security status of xorg-server please refer to its
security tracker page at:
https://security-tracker.debian.org/tracker/xorg-server
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/
Mailing list: debian-security-announce AT lists.debian.org
-----BEGIN PGP SIGNATURE-----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=Hr75
-----END PGP SIGNATURE-----
- [IT-SecNots] [SECURITY] [DSA 5657-1] xorg-server security update, Salvatore Bonaccorso, 12.04.2024
Archiv bereitgestellt durch MHonArc 2.6.19+.