[ubuntu/questing-security] xwayland 2:24.1.6-1ubuntu1.1 (Accepted)

Marc Deslauriers marc.deslauriers at canonical.com
Wed Oct 29 11:40:50 UTC 2025


xwayland (2:24.1.6-1ubuntu1.1) questing-security; urgency=medium

  * SECURITY UPDATE: Use-after-free in XPresentNotify structures creation
    - debian/patches/CVE-2025-62229.patch: fix use-after-free in
      present/present_notify.c.
    - CVE-2025-62229
  * SECURITY UPDATE: Use-after-free in Xkb client resource removal
    - debian/patches/CVE-2025-62230-1.patch: make the RT_XKBCLIENT resource
      private in xkb/xkb.c, include/xkbsrv.h.
    - debian/patches/CVE-2025-62230-2.patch: free the XKB resource when
      freeing XkbInterest in xkb/xkbEvents.c.
    - CVE-2025-62230
  * SECURITY UPDATE: Value overflow in Xkb extension XkbSetCompatMap()
    - debian/patches/CVE-2025-62231.patch: prevent overflow in xkb/xkb.c.
    - CVE-2025-62231

Date: 2025-10-23 18:38:16.166428+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/xwayland/2:24.1.6-1ubuntu1.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Questing-changes mailing list