-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 20 Jun 2025 14:46:37 +0200 Source: xorg-server Binary: xorg-server-source xserver-common Architecture: all Version: 2:21.1.7-3+deb12u10 Distribution: bookworm-security Urgency: high Maintainer: all Build Daemon (x86-grnet-02) Changed-By: Salvatore Bonaccorso Description: xorg-server-source - Xorg X server - source files xserver-common - common files used by various X servers Changes: xorg-server (2:21.1.7-3+deb12u10) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * render: Avoid 0 or less animated cursors (CVE-2025-49175) * os: Do not overflow the integer size with BigRequest (CVE-2025-49176) * xfixes: Check request length for SetClientDisconnectMode (CVE-2025-49177) * os: Account for bytes to ignore when sharing input buffer (CVE-2025-49178) * record: Check for overflow in RecordSanityCheckRegisterClients() (CVE-2025-49179) * randr: Check for overflow in RRChangeProviderProperty() (CVE-2025-49180) * xfree86: Check for RandR provider functions (CVE-2025-49180) * os: Check for integer overflow on BigRequest length (CVE-2025-49176) Checksums-Sha1: 0f38b4636c268ea37028fe756d14ccc2b90f4619 7398712 xorg-server-source_21.1.7-3+deb12u10_all.deb 7523b305467adeab70ada2e9eefbb772a5344ab1 11730 xorg-server_21.1.7-3+deb12u10_all-buildd.buildinfo 62d15680e241c7533829546d3caad4f43e3a501d 2383296 xserver-common_21.1.7-3+deb12u10_all.deb Checksums-Sha256: 7d99d33d39700885684d6c9e34733a4118aa306757e13af064ef7b3956c8e6df 7398712 xorg-server-source_21.1.7-3+deb12u10_all.deb 465272dc38a87b12c78f61b3808e592a9ad53fc0c210bec0a2e3578f9212893e 11730 xorg-server_21.1.7-3+deb12u10_all-buildd.buildinfo 6bfaf35e850b15d87d8851dada50210502d3ae0fd28f837bbb83f0e64ed5a904 2383296 xserver-common_21.1.7-3+deb12u10_all.deb Files: 8a16cd5137e9b1285cb4de08c6eed6a2 7398712 x11 optional xorg-server-source_21.1.7-3+deb12u10_all.deb c5a2bd1315c70e2c6b2ba2d2e12ab5ae 11730 x11 optional xorg-server_21.1.7-3+deb12u10_all-buildd.buildinfo c235b41e91f2059b6aa5e4a592fc7e1f 2383296 x11 optional xserver-common_21.1.7-3+deb12u10_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEj4Fym5GgeZdPqKhrJm69HxMTN+oFAmhVeJkACgkQJm69HxMT N+qnPQ/+Mh5vnqOqXeedgSQSoTrlDbbzBfQYG7d6pGq8oyyotA92pF9qJnnqssO3 JYOtvlSji+ZP+ceL084gIDIzZIFsDXb1pMAUlyPm+XRHjbDqbNVhhTV/KwFF/9Gc FO7+cGTTxYn17DLoS7VtmA1qZ4DebnZay1VzSop1+VKBpLcv7ZDP77aPP4W5JfsW buFGZ4v/qdlVNR8YrBt/1aTctxuYhPg2g4YWPUEUOcVFRh/dopZuuM91dBDma6fz okfdOZslqWHl86MsPY5uILuIxXgWg2Vt0haNBVFHZ4fSE0+waGYOYhtWeQGyQG4E xw1Cv288Ya6zkgOsOLaB9Hq919FTrpI9ueIo3giRYPzhdE1is6HwYUxW33rGRObW lpHHV2YWhIp7JMdtslBju1QXAYkFj5AVeao+gRWA78jofaKVn+bpsmervdfL4BrJ cKlDbRvFQfOCl/uLhaHhtcetRS0F9FqG7cHlb9Gqq02z+GwaCXX+wXBaLen694KY ynNRQ6ta7RA7Dj5dDiRX0IAZwTlWGPUDMKl8pcJNVwYLMhXBjc9b7FDxNVQ7e1vR Px7qRDEI7Q+fRReVdatgmL3XMksjIl0jNnuXZQzTSGZU5Q4ab9fmXv1VGmSq71jZ fgPnHZAAgmiV2e0x7kR2DiMNElWFAMQEXT6Ccw3wPlGsAsL+TAI= =igU4 -----END PGP SIGNATURE-----