SUSE-SU-2024:0109-1
Dashboard / Vulnerabilities / SUSE-SU-2024:0109-1
SUSE-SU-2024:0109-1
Summary: Security update for xorg-x11-server
Details: This update for xorg-x11-server fixes the following issues: Security fixes: - CVE-2023-6816: Fixed heap buffer overflow in DeviceFocusEvent and ProcXIQueryPointer (bsc#1218582) - CVE-2024-0229: Fixed reattaching to different master device may lead to out-of-bounds memory access (bsc#1218583) - CVE-2024-21885: Fixed heap buffer overflow in XISendDeviceHierarchyEvent (bsc#1218584) - CVE-2024-21886: Fixed heap buffer overflow in DisableDevice (bsc#1218585) Other: - Fix vmware graphics driver crash (bsc#1218176) - Fix xserver crash when Xinerama is enabled (bsc#1218240)
References: https://www.suse.com/support/update/announcement/2024/suse-su-20240109-1/, https://bugzilla.suse.com/1218176, https://bugzilla.suse.com/1218240, https://bugzilla.suse.com/1218582, https://bugzilla.suse.com/1218583, https://bugzilla.suse.com/1218584, https://bugzilla.suse.com/1218585, https://www.suse.com/security/cve/CVE-2023-6816, https://www.suse.com/security/cve/CVE-2024-0229, https://www.suse.com/security/cve/CVE-2024-21885, https://www.suse.com/security/cve/CVE-2024-21886
Affected packages
Package
Name: xorg-x11-server
Purl: pkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP5
Affected ranges
Type: ECOSYSTEM
Events:
