Kaonefatsa Seva ea X.Org 21.1.5 le xwayland 22.1.6 ka ho felisa ho ba tlokotsing 6

Litokiso tse lokisoang tsa X.Org Server 21.1.5 le xwayland 22.1.6 li hatisitsoe, e leng karolo ea DDX (Device-Dependent X) e nolofalletsang ho thakholoa ha Seva ea X.Org ho hlophisa ts'ebetso ea lits'ebetso tsa X11 libakeng tse thehiloeng ho Wayland. Liphetolelo tse ncha li sebetsana le bofokoli ba 6 bo ka sebelisoang hampe bakeng sa ho eketseha ha menyetla ho litsamaiso tse tsamaisang seva sa X e le motso, hammoho le ts'ebetsong ea khoutu e hole ho litlhophiso tse sebelisang phetiso ea nako ea X11 ka SSH bakeng sa phihlello.

  • CVE-2022-46340 - Stack overflow ha o sebetsana le likopo tsa XTestSwapFakeInput tse nang le data e kholo ho feta li-byte tse 32 tse fetiselitsoeng lebaleng la GenericEvents.
  • CVE-2022-46341 phihlello ea buffer e kantle ho meeli e etsahala ha o sebetsana le likopo tsa XIPassiveUngrab tse bitsoang ka likhoutu tse kholo kapa boleng ba konopo.
  • CVE-2022-46342 - phihlello ea memori ea morao-rao ka ho thetsa likopo tsa XvdiSelectVideoNotify.
  • CVE-2022-46343 - phihlello ea memori ea morao-rao ka ho thetsa likopo tsa ScreenSaverSetAttributes.
  • CVE-2022-46344 phihlello ea data e kantle ho meeli ha o sebetsana le likopo tsa XIChangProperty ka li-parameter tse kholo.
  • CVE-2022-46283 - phihlello ea memori ea mahala ka mor'a ho sebelisa XkbGetKbdByName kopo ea ho qhekella.

Source: opennet.ru

Eketsa ka tlhaloso