This release fixes an invalid event type mask in XTestSwapFakeInput which was inadvertently changed from octal 0177 to hexadecimal 0x177 in the fix for CVE-2022-46340.
It also includes backports for a couple of fixes in XQuartz and fixes for XKB (noticeably for CVE-2022-3550 and CVE-2022-3551). Jeremy Huddleston Sequoia (1): xquartz: Fix some formatting John D Pell (1): XQuartz: stub: Call LSOpenApplication instead of fork()/exec() Olivier Fourdan (1): xserver 21.1.6 Peter Hutterer (3): xkb: proof GetCountedString against request length attacks xkb: fix some possible memleaks in XkbGetKbdByName Xext: fix invalid event type mask in XTestSwapFakeInput git tag: xorg-server-21.1.6 https://xorg.freedesktop.org/archive/individual/xserver/xorg-server-21.1.6.tar.gz SHA256: 6f9c73ccc50e2731adac17671c8e33687738c8cd556b49ecb9f410ce7217be11 xorg-server-21.1.6.tar.gz SHA512: 4f87e7837b66c24c1e04a82c252dfef83a49a8886c9e2b23f6fecb5eb1c7fa4aaadc6802e0f0dc13ecb5eef324e966ccccda0c182bf04824876f69508e282bac xorg-server-21.1.6.tar.gz PGP: https://xorg.freedesktop.org/archive/individual/xserver/xorg-server-21.1.6.tar.gz.sig https://xorg.freedesktop.org/archive/individual/xserver/xorg-server-21.1.6.tar.xz SHA256: 1eb86ed674d042b6c8b1f9135e59395cbbca35ed551b122f73a7d8bb3bb22484 xorg-server-21.1.6.tar.xz SHA512: 5e3cf879facf3a04aa64b7f6129226ea68a97109a7daca5146b57b4c707cc76a4fbad1924997dd319efd8c8c20eb5bb59570a719101b76ae07e923b7e9656239 xorg-server-21.1.6.tar.xz PGP: https://xorg.freedesktop.org/archive/individual/xserver/xorg-server-21.1.6.tar.xz.sig
OpenPGP_0x14706DBE1E4B4540.asc
Description: OpenPGP public key
OpenPGP_signature
Description: OpenPGP digital signature