#1 2022-12-19 21:08:51

[ANNOUNCE] - xorg-server 21.1.6


Got this in my mailbox this afternoon.


This release fixes an invalid event type mask in XTestSwapFakeInput which was inadvertently changed from octal 0177 to hexadecimal 0x177 in the fix
for CVE-2022-46340.

It also includes backports for a couple of fixes in XQuartz and fixes for XKB (noticeably for CVE-2022-3550 and CVE-2022-3551).

Jeremy Huddleston Sequoia (1):
       xquartz: Fix some formatting

John D Pell (1):
       XQuartz: stub: Call LSOpenApplication instead of fork()/exec()

Olivier Fourdan (1):
       xserver 21.1.6

Peter Hutterer (3):
       xkb: proof GetCountedString against request length attacks
       xkb: fix some possible memleaks in XkbGetKbdByName
       Xext: fix invalid event type mask in XTestSwapFakeInput

--- … 1.6.tar.gz
SHA256: 6f9c73ccc50e2731adac17671c8e33687738c8cd556b49ecb9f410ce7217be11  xorg-server-21.1.6.tar.gz
PGP: … tar.gz.sig … 1.6.tar.xz
SHA256: 1eb86ed674d042b6c8b1f9135e59395cbbca35ed551b122f73a7d8bb3bb22484  xorg-server-21.1.6.tar.xz
PGP: … tar.xz.sig





