[ANNOUNCE] libXxf86vm 1.1.3

Alan Coopersmith alan.coopersmith at oracle.com
Thu May 30 18:47:18 PDT 2013

libXxf86vm - Xlib-based client library for the XFree86-VidMode X extension

This release provides the fixes for the recently announced security issue
CVE-2013-2001 along with a number of other fixes to the error handling
code found while investigating that issue.

Adam Jackson (1):
      configure: Remove AM_MAINTAINER_MODE

Alan Coopersmith (10):
      Replace deprecated Automake INCLUDES variable with AM_CPPFLAGS
      When Xcalloc() returns NULL, you don't need to Xfree() it
      Improve error handling in XF86VidModeGetMonitor()
      Unlock display before returning alloc error in XF86VidModeGetModeLine()
      Unlock display before returning alloc error in XF86VidModeGetAllModeLines()
      Unlock display before returning alloc error in XF86VidModeGetDotClocks()
      Use _XEatDataWords to avoid overflow of length calculations
      memory corruption in XF86VidModeGetGammaRamp() [CVE-2013-2001]
      avoid integer overflow in XF86VidModeGetModeLine()
      libXxf86vm 1.1.3

Colin Walters (1):
      autogen.sh: Honor NOCONFIGURE environment variable

git tag: libXxf86vm-1.1.3

MD5:  e46f6ee4f4567349a3189044fe1bb712
SHA1: 5a307415da68e0b71abcf0cb9b5005f16a41ede8
SHA256: da5e86c32ee2069b9e6d820e4c2e4242d4877cb155a2b2fbf2675a1480ec37b8

MD5:  68f5e4ee92c2937f89fca0580bf359cf
SHA1: a66a298471f33ba7d63bc76db14fdb3f89319a20
SHA256: 26ffbb4baaee0256ef9cdd7b8631aa3fa7bbb32e87125cfdb37fa644a623570e

	-Alan Coopersmith-              alan.coopersmith at oracle.com
	 Oracle Solaris Engineering - http://blogs.oracle.com/alanc
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 832 bytes
Desc: not available
URL: <http://lists.x.org/archives/xorg-announce/attachments/20130530/dad0adc8/attachment.pgp>

More information about the xorg-announce mailing list