Go to file
Matthieu Herrb f912b5ccd3 CVE-2008-2360 - RENDER Extension heap buffer overflow
An integer overflow may occur in the computation of the size of the
glyph to be allocated by the AllocateGlyph() function which will cause
less memory to be allocated than expected, leading to later heap
overflow.

On systems where the X  SIGSEGV handler includes a stack trace, more
malloc()-type functions are called, which may lead to other
exploitable issues.
(cherry picked from commit b1a4a96885)
2008-06-11 12:08:15 -07:00
afb Remove RCS tags. Fix Xprint makefile braindamage. 2006-07-21 17:56:00 -04:00
cfb Remove RCS tags. Fix Xprint makefile braindamage. 2006-07-21 17:56:00 -04:00
cfb32 get rid of XFree86LOADER, XFree86Server, XFree86Module, and IN_MODULE 2006-07-18 18:17:38 -04:00
composite Bug #9219: Use pWin->viewable instead of pWin->realized to catch InputOnly windows too. 2006-12-10 18:21:22 -05:00
damageext Set the Damage version supported in the server, instead of using damageproto. 2007-02-13 13:26:25 -08:00
dbe Multiple integer overflows in dbe and render extensions 2007-01-09 14:13:40 +01:00
dix ffs: handle 0 argument (bug #8968) 2006-11-30 20:20:16 +02:00
doc Update Xserver man page to match commit ed33c7c98a 2007-01-19 14:53:52 -08:00
exa Add missing dirty marking in a couple of fallback cases in the exaGlyphs path. 2007-02-14 13:01:56 -08:00
fb Really fix optimized render cases being hit when they shouldn't. 2007-01-29 23:01:52 -08:00
GL Fix context sharing between direct/indirect contexts 2008-02-27 16:51:31 +00:00
hw Xephyr: fix immediat segfault on amd64 2007-08-18 11:50:33 +02:00
include Bug #9555: Always define _GNU_SOURCE in glibc environments. 2007-01-22 17:58:37 -05:00
mfb Remove RCS tags. Fix Xprint makefile braindamage. 2006-07-21 17:56:00 -04:00
mi Bug #8937: Extension setup functions not called on server resets 2006-11-07 13:55:44 -05:00
miext Provide option to report damage after operation is complete. 2007-02-12 16:02:29 -08:00
os Bug #10296: Fix timer rescheduling. 2007-04-05 23:32:56 -07:00
randr RandR 1.2 spec says CRTC info contains screen-relative geometry. 2007-04-15 22:59:19 -03:00
record CVE-2008-1377 - RECORD and Security extensions memory corruption 2008-06-11 11:33:36 -07:00
render CVE-2008-2360 - RENDER Extension heap buffer overflow 2008-06-11 12:08:15 -07:00
Xext CVE-2008-1379 - MIT-SHM arbitrary memory read 2008-06-11 11:33:39 -07:00
xfixes Check for clientGone before sending events from XFixes (bug #1753). 2007-02-19 15:33:24 -08:00
Xi get rid of XFree86LOADER, XFree86Server, XFree86Module, and IN_MODULE 2006-07-18 18:17:38 -04:00
xkb xkb: fix wrapping when switching between groups 2006-10-11 16:02:32 -04:00
XTrap Remove RCS tags. Fix Xprint makefile braindamage. 2006-07-21 17:56:00 -04:00
.gitignore add another file to .gitignore 2006-07-05 13:27:26 -07:00
acinclude.m4 Update AC_DEFINE_DIR to version compatible with CVS autoconf which requires 2006-06-05 07:15:23 +00:00
autogen.sh Use canonical autogen.sh, which supports srcdir != objdir autogen. 2005-07-01 21:13:36 +00:00
configure.ac Update version to 1.3.0.0 2007-04-19 19:09:43 -07:00
COPYING Stub COPYING files 2005-12-19 16:34:07 +00:00
cpprules.in Man page processing/installation and other doc file updates 2005-09-30 02:37:57 +00:00
Makefile.am Xprint/ -> hw/xprint 2006-06-18 21:07:28 -04:00
xorg-server.m4 Add xorg-server.m4 for driver dependency checking. 2005-11-01 15:01:51 +00:00
xorg-server.pc.in get rid of XFree86LOADER, XFree86Server, XFree86Module, and IN_MODULE 2006-07-18 18:17:38 -04:00