Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package xorg-x11-server for openSUSE:Factory checked in at 2024-11-06 16:49:21 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/xorg-x11-server (Old) and /work/SRC/openSUSE:Factory/.xorg-x11-server.new.2020 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "xorg-x11-server" Wed Nov 6 16:49:21 2024 rev:435 rq:1221609 version:21.1.14 Changes: -------- --- /work/SRC/openSUSE:Factory/xorg-x11-server/xorg-x11-server.changes 2024-09-25 21:52:56.519410117 +0200 +++ /work/SRC/openSUSE:Factory/.xorg-x11-server.new.2020/xorg-x11-server.changes 2024-11-06 16:49:35.382306615 +0100 @@ -1,0 +2,19 @@ +Tue Oct 29 19:08:32 UTC 2024 - Stefan Dirsch <sndir...@suse.com> + +- 21.1.14 covers also + * CVE-2024-31080 (bsc#1222309) + * CVE-2024-31081 (bsc#1222310) + * CVE-2024-31082 (bsc#1222311) + * CVE-2024-31083 (bsc#1222312) + +------------------------------------------------------------------- +Tue Oct 29 19:00:06 UTC 2024 - Stefan Dirsch <sndir...@suse.com> + +- Security update 21.1.14 + This release addresses the following security issue + * CVE-2024-9632: Heap-based buffer overflow privilege escalation + in _XkbSetCompatMap (bsc#1231565) +- supersedes U_render-Avoid-possible-double-free-in-ProcRenderAddGl.patch +- supersedes U_xorg-xserver-e89edec497ba.patch + +------------------------------------------------------------------- Old: ---- U_render-Avoid-possible-double-free-in-ProcRenderAddGl.patch U_xorg-xserver-e89edec497ba.patch xorg-server-21.1.12.tar.xz xorg-server-21.1.12.tar.xz.sig New: ---- xorg-server-21.1.14.tar.xz xorg-server-21.1.14.tar.xz.sig BETA DEBUG BEGIN: Old: in _XkbSetCompatMap (bsc#1231565) - supersedes U_render-Avoid-possible-double-free-in-ProcRenderAddGl.patch - supersedes U_xorg-xserver-e89edec497ba.patch Old:- supersedes U_render-Avoid-possible-double-free-in-ProcRenderAddGl.patch - supersedes U_xorg-xserver-e89edec497ba.patch BETA DEBUG END: ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ xorg-x11-server.spec ++++++ --- /var/tmp/diff_new_pack.2ShFN0/_old 2024-11-06 16:49:36.578353410 +0100 +++ /var/tmp/diff_new_pack.2ShFN0/_new 2024-11-06 16:49:36.582353566 +0100 @@ -36,7 +36,7 @@ %endif Name: xorg-x11-server -Version: 21.1.12 +Version: 21.1.14 Release: 0 URL: http://xorg.freedesktop.org/ Summary: X @@ -244,8 +244,6 @@ Patch2000: u_fbdevhw_kernel6.9_break_fbdev_open.patch Patch1218176: u_miCloseScreen_check_for_null_pScreen_dev_private.patch -Patch1222442: U_render-Avoid-possible-double-free-in-ProcRenderAddGl.patch -Patch1222443: U_xorg-xserver-e89edec497ba.patch %description This package contains the X.Org Server. @@ -407,9 +405,6 @@ %patch -P 1218176 -p1 -%patch -P 1222442 -p1 -%patch -P 1222443 -p1 - %build # We have some -z now related errors during X default startup (boo#1197994): # - when loading modesetting: gbm_bo_get_plane_count ++++++ xorg-server-21.1.12.tar.xz -> xorg-server-21.1.14.tar.xz ++++++ ++++ 16112 lines of diff (skipped)