I-X.Org Server 21.1.18 ibuyekeza ngobungozi obungu-6 obulungisiwe

Ukukhishwa okulungile kwe-X.Org Server 21.1.17 kanye nengxenye ye-DDX (Device-Dependent X) xwayland 24.1.7 kushicilelwe, okuqinisekisa ukwethulwa Kweseva ye-X.Org yokuhlela ukusetshenziswa kwezinhlelo zokusebenza ze-X11 ezindaweni ezisekelwe e-Wayland. Inguqulo entsha ye-X.Org Server ilungisa ubungozi obuyi-6. Izinkinga zingase zisetshenziswe ngendlela enamandla ukuze kukhuliswe amalungelo kumasistimu lapho iseva ye-X isebenza khona njengempande, kanye nokusebenzisa ikhodi ukude ekulungiselelweni lapho ukudluliselwa kweseshini ye-X11 kusetshenziselwa ukufinyelela nge-SSH.

Ubungozi obuhlonziwe:

  • I-CVE-2025-49176 - Ukuchichima okuphelele okuholela ekonakaleni kwenkumbulo kukhona ekusetshenzisweni kwesandiso Sezicelo Ezinkulu, esivumela ukuthumela izicelo ezinkulu kunamakhilobhayithi angu-64. Ubungozi bukhona kusukela kwakhululwa i-X11R6.0 (1994).
  • I-CVE-2025-49179 - Ukuchichima okuphelele okuholela ekonakaleni kwenkumbulo kukhona ekusetshenzisweni kwesandiso se-X Record uma kuthunyelwa isibalo esikhulu kakhulu seklayenti noma ububanzi. Ubungozi bukhona kusukela ku-X11R6.1 (1996).
  • I-CVE-2025-49180 iyisamba esichichimayo esiholela ekonakaleni kwenkumbulo ekusetshenzisweni kwesandiso se-RandR. Ukuba sengozini kuvela kusukela ekukhishweni kwe-1.13 RC1 (2012).
  • I-CVE-2025-49178 - Amathuba okudala isimo esiholela ekuvimbeni izicelo ezivela kwamanye amaklayenti. Ukuba sengozini kuzibonakalisa kusukela kwakhululwa i-Xorg 1.10.0
  • I-CVE-2025-49175 - Ngaphandle kwemingcele ifundwe kusandiso se-X Rendering lapho kwenziwa imisebenzi kuzikhombisi ezigqwayizayo. Ubungozi bukhona kusukela ku-XFree86 4.3.0 (2003).
  • CVE-2025-49177 - Ukuvuza kwedatha ekusetshenzisweni kwesandiso se-XFIXES okubangelwa ukuntuleka kokuhlolwa kosayizi wesicelo seklayenti kusibambi se-XFixesSetClientDisconnectMode (iklayenti lingathumela isicelo esifushane futhi lifunde idatha yesicelo sangaphambilini. Ukuba sengozini kuzibonakalisa kusukela kwakhululwa i-Xorg Server 21.1RC1).

Isibuyekezo: Okushisayo ezithendeni zalokhu kukhishwa, i-X.Org Server 21.1.18 kanye ne-xwayland 24.1.8 zikhishiwe, ezihlanganisa izinguquko ezengeziwe ukuze kulungiswe ukuba sengozini kwe-CVE-2025-49176.

Source: opennet.ru

Engeza amazwana