CVSROOT: /cvs
Module name: xenocara
Changes by: [email protected] 2025/06/17 07:16:43
Modified files:
xserver/dix : Tag: OPENBSD_7_6 dispatch.c
xserver/hw/xfree86/modes: Tag: OPENBSD_7_6 xf86RandR12.c
xserver/os : Tag: OPENBSD_7_6 io.c
xserver/randr : Tag: OPENBSD_7_6 rrproviderproperty.c
xserver/record : Tag: OPENBSD_7_6 record.c
xserver/render : Tag: OPENBSD_7_6 animcur.c render.c
xserver/xfixes : Tag: OPENBSD_7_6 disconnect.c
Log message:
Merge fixes from upstream for multiple Xserver issues:
CVE-2025-49175: Out-of-bounds access in X Rendering extension
(Animated cursors)
CVE-2025-49176: Integer overflow in Big Requests Extension
CVE-2025-49177: Data leak in XFIXES Extension 6
(XFixesSetClientDisconnectMode)
CVE-2025-49178: Unprocessed client request via bytes to ignore
CVE-2025-49179: Integer overflow in X Record extension
CVE-2025-49180: Integer overflow in RandR extension
(RRChangeProviderProperty)
from matthieu@
this is errata/7.6/019_xserver.patch