Hello community,
here is the log from the commit of package xorg-x11-Xvnc
checked in at Thu Apr 12 23:23:51 CEST 2007.
--------
--- xorg-x11-Xvnc/xorg-x11-Xvnc.changes 2007-03-07 17:52:13.000000000 +0100
+++ /mounts/work_src_done/STABLE/xorg-x11-Xvnc/xorg-x11-Xvnc.changes 2007-04-12 19:00:40.196770000 +0200
@@ -1,0 +2,7 @@
+Thu Apr 12 19:00:35 CEST 2007 - sndirsch@suse.de
+
+- bug-243978_xcmisc.diff:
+ * mem corruption in ProcXCMiscGetXIDList (CVE-2007-1003,
+ Bug #243978/261141)
+
+-------------------------------------------------------------------
New:
----
bug-243978_xcmisc.diff
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Other differences:
------------------
++++++ xorg-x11-Xvnc.spec ++++++
--- /var/tmp/diff_new_pack.O15630/_old 2007-04-12 23:22:55.000000000 +0200
+++ /var/tmp/diff_new_pack.O15630/_new 2007-04-12 23:22:55.000000000 +0200
@@ -14,7 +14,7 @@
%define vnc_version 4_1_2
Summary: VNC Server for the X Window System
Version: 7.1
-Release: 40
+Release: 46
URL: http://xorg.freedesktop.org/
%if %suse_version <= 1010
Provides: XFree86-Xvnc
@@ -42,6 +42,7 @@
Patch22: 64bit.diff
Patch23: warning-fix.diff
Patch24: mesa.diff
+Patch25: bug-243978_xcmisc.diff
License: GNU General Public License (GPL)
Group: System/X11/Servers/XF86_4
BuildRoot: %{_tmppath}/%{name}-%{version}-build
@@ -71,6 +72,7 @@
%patch14 -p3 -b .s390
%patch23
%patch24
+%patch25 -p0
popd
%patch15 -p1 -b .viewer-reparent
%patch16 -p1 -b .64bit
@@ -159,6 +161,10 @@
%endif
%changelog
+* Thu Apr 12 2007 - sndirsch@suse.de
+- bug-243978_xcmisc.diff:
+ * mem corruption in ProcXCMiscGetXIDList (CVE-2007-1003,
+ Bug #243978/261141)
* Wed Mar 07 2007 - sndirsch@suse.de
- added meta file for SuSEfirewall2 (Bug #251662)
* Tue Feb 13 2007 - sndirsch@suse.de
++++++ bug-243978_xcmisc.diff ++++++
Index: Xext/xcmisc.c
===================================================================
RCS file: /cvs/xenocara/xserver/Xext/xcmisc.c,v
retrieving revision 1.1.1.1
diff -u -r1.1.1.1 xcmisc.c
--- Xext/xcmisc.c 26 Nov 2006 18:14:51 -0000 1.1.1.1
+++ Xext/xcmisc.c 16 Feb 2007 21:59:51 -0000
@@ -42,6 +42,12 @@
#include