Slackware: 2022-271-01: Slackware 15.0 xorg-server-xwayland Security Update
Summary
Here are the details from the Slackware 15.0 ChangeLog: patches/packages/xorg-server-xwayland-21.1.4-i586-2_slack15.0.txz: Rebuilt. xkb: switch to array index loops to moving pointers. xkb: add request length validation for XkbSetGeometry. xkb: swap XkbSetDeviceInfo and XkbSetDeviceInfoCheck. I hadn't realized that the xorg-server patches were needed (or applied cleanly) to Xwayland. Thanks to LuckyCyborg for the kind reminder. :-) For more information, see: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2319 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2320 (* Security fix *)
Where Find New Packages
Thanks to the friendly folks at the OSU Open Source Lab
(https://osuosl.org/) for donating FTP and rsync hosting
to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for
additional mirror sites near you.
Updated package for Slackware 15.0:
Updated package for Slackware x86_64 15.0:
MD5 Signatures
Slackware 15.0 package:
3f8e6a5aba6c25022cde165365f64e19 xorg-server-xwayland-21.1.4-i586-2_slack15.0.txz
Slackware x86_64 15.0 package:
dae5edb2843e0724a7d3e43e108cfe87 xorg-server-xwayland-21.1.4-x86_64-2_slack15.0.txz
Installation Instructions
Installation instructions: Upgrade the package as root: # upgradepkg xorg-server-xwayland-21.1.4-i586-2_slack15.0.txz