Format: 1.8 Date: Mon, 17 Jul 2017 13:16:04 -0400 Source: xorg-server-hwe-16.04 Binary: xserver-xorg-core-hwe-16.04 xserver-xorg-dev-hwe-16.04 xserver-xephyr-hwe-16.04 xserver-xorg-core-hwe-16.04-dbg xmir-hwe-16.04 xorg-server-source-hwe-16.04 xwayland-hwe-16.04 xserver-xorg-legacy-hwe-16.04 Architecture: s390x_translations s390x Version: 2:1.18.4-1ubuntu6.1~16.04.2 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: xmir-hwe-16.04 - Xmir X server xorg-server-source-hwe-16.04 - Xorg X server - source files xserver-xephyr-hwe-16.04 - nested X server xserver-xorg-core-hwe-16.04 - Xorg X server - core server xserver-xorg-core-hwe-16.04-dbg - Xorg - the X.Org X server (debugging symbols) xserver-xorg-dev-hwe-16.04 - Xorg X server - development files xserver-xorg-legacy-hwe-16.04 - setuid root Xorg server wrapper xwayland-hwe-16.04 - Xwayland X server Changes: xorg-server-hwe-16.04 (2:1.18.4-1ubuntu6.1~16.04.2) xenial-security; urgency=medium . * SECURITY UPDATE: DoS and possible code execution in endianness conversion of X Events - debian/patches/CVE-2017-10971-1.patch: do not try to swap GenericEvent in Xi/sendexev.c. - debian/patches/CVE-2017-10971-2.patch: verify all events in ProcXSendExtensionEvent in Xi/sendexev.c. - debian/patches/CVE-2017-10971-3.patch: disallow GenericEvent in SendEvent request in dix/events.c, dix/swapreq.c. - CVE-2017-10971 * SECURITY UPDATE: information leak in XEvent handling - debian/patches/CVE-2017-10972.patch: zero target buffer in SProcXSendExtensionEvent in Xi/sendexev.c. - CVE-2017-10972 * SECURITY UPDATE: MIT-MAGIC-COOKIES timing attack - debian/patches/CVE-2017-2624.patch: use timingsafe_memcmp() in configure.ac, include/dix-config.h.in, include/os.h, os/mitauth.c, os/timingsafe_memcmp.c. - CVE-2017-2624 Checksums-Sha1: c89e598b6694af0013f0e8af91941d66f8fe0807 28311 xorg-server-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x_translations.tar.gz 2f4a0476e3f715893a8c3ad8c8616894fafee451 2726002 xserver-xephyr-hwe-16.04-dbgsym_1.18.4-1ubuntu6.1~16.04.2_s390x.ddeb 0ff72e6d84006e48e9b58aabd68fb34a980bd3b2 859174 xserver-xephyr-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x.deb 8f11c0f9b5bc49e9e5229b344c298abff4c202d6 6614194 xserver-xorg-core-hwe-16.04-dbg_1.18.4-1ubuntu6.1~16.04.2_s390x.deb eb4bfc73b232251b277de33889c694f8d7ad64f6 3888464 xserver-xorg-core-hwe-16.04-dbgsym_1.18.4-1ubuntu6.1~16.04.2_s390x.ddeb 1eaed4939550de4fba7fd2e8dd462f5703440d86 1245180 xserver-xorg-core-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x.deb ce0d57c1cbedcb6c55093c3f63978dffeb849419 197418 xserver-xorg-dev-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x.deb b2653f9e2ef08c5ca3c8d38c2b07c8b9b0bc4c87 7198 xserver-xorg-legacy-hwe-16.04-dbgsym_1.18.4-1ubuntu6.1~16.04.2_s390x.ddeb c8cd641fea99df3e369038225c4b23591a82d7c6 35042 xserver-xorg-legacy-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x.deb a81b3a2a83f113bcc7d9240c96ec33dd798fd4e3 2501938 xwayland-hwe-16.04-dbgsym_1.18.4-1ubuntu6.1~16.04.2_s390x.ddeb 014a9b7f9b84696d213c3573ad2ee09cea08eb7f 792430 xwayland-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x.deb Checksums-Sha256: def875a189249e021f6a961c5f12bd3ee6a6633ec7f968a72fb6b81f786ca898 28311 xorg-server-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x_translations.tar.gz 5633115dbc57e143f80e57ef41a96abd8d18ef239a50f93e65f44305e36af25d 2726002 xserver-xephyr-hwe-16.04-dbgsym_1.18.4-1ubuntu6.1~16.04.2_s390x.ddeb b47c5fdc6b6b94b8c99ac8e539dfd4037e127f8296fdc4a8af136698ec7bb9b5 859174 xserver-xephyr-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x.deb 652f4b09d1a42a7e6ef5a4cbcc8612c53eb7025737eda2a88abdd26065245c8d 6614194 xserver-xorg-core-hwe-16.04-dbg_1.18.4-1ubuntu6.1~16.04.2_s390x.deb 19521ae24c0bd9f17b0b816bf9d13a6b6e664964baaab3ff1620d64cfe16aaa5 3888464 xserver-xorg-core-hwe-16.04-dbgsym_1.18.4-1ubuntu6.1~16.04.2_s390x.ddeb 3939113213c963dd8b7ea50cb92d537fa06853618e6d36cc724169457937908a 1245180 xserver-xorg-core-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x.deb 07245ad1fb76f282b8d27fce9b3fccb0cf67d7af6887fe79a6626a1c194ca342 197418 xserver-xorg-dev-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x.deb 433b2965af49316c23853445ccb416e9d3fffab830066972f9be1952b82b4624 7198 xserver-xorg-legacy-hwe-16.04-dbgsym_1.18.4-1ubuntu6.1~16.04.2_s390x.ddeb 833583a4fadf0b4028cc4a93539009ae9b0bbabfc96bc8b4139bff01fa85ee77 35042 xserver-xorg-legacy-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x.deb a02ef35959dbd20cb13e9076841a5d086b50b1a2b2c8b7c3005448ecfe2b1471 2501938 xwayland-hwe-16.04-dbgsym_1.18.4-1ubuntu6.1~16.04.2_s390x.ddeb cee3224eb9c52f8d17860a66a8f2e30a157c89ebbe4100d9223de9d42f85ca64 792430 xwayland-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x.deb Files: d7c7abb3c5b358f6419a333e130d8478 28311 raw-translations - xorg-server-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x_translations.tar.gz 3931d6f11d5b4bca0519a814eb28066d 2726002 x11 extra xserver-xephyr-hwe-16.04-dbgsym_1.18.4-1ubuntu6.1~16.04.2_s390x.ddeb 07dd58d9b05d99892ca361560fa890ed 859174 x11 optional xserver-xephyr-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x.deb 687cf4a38b267972cc5ffcb518645f55 6614194 debug extra xserver-xorg-core-hwe-16.04-dbg_1.18.4-1ubuntu6.1~16.04.2_s390x.deb b4ad9a5865c522d4357caca94ecc0116 3888464 x11 extra xserver-xorg-core-hwe-16.04-dbgsym_1.18.4-1ubuntu6.1~16.04.2_s390x.ddeb 01ae65c80896cf044af2b51a75520de6 1245180 x11 optional xserver-xorg-core-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x.deb d28b45004f50ff9165122e3dd45c6421 197418 x11 optional xserver-xorg-dev-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x.deb 10dbd13635cf7f943dc1a1bd24910ab1 7198 x11 extra xserver-xorg-legacy-hwe-16.04-dbgsym_1.18.4-1ubuntu6.1~16.04.2_s390x.ddeb 44b8efc8f77c57485e590e7f359d145b 35042 x11 extra xserver-xorg-legacy-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x.deb c91242d22845a5ce9d36e68e51da1e84 2501938 x11 extra xwayland-hwe-16.04-dbgsym_1.18.4-1ubuntu6.1~16.04.2_s390x.ddeb b7527a9fb2b65b89a759abfa3cb634a2 792430 x11 optional xwayland-hwe-16.04_1.18.4-1ubuntu6.1~16.04.2_s390x.deb Original-Maintainer: Debian X Strike Force