Ubuntu alert USN-7299-2 (xorg-server, xorg-server-hwe-16.04, xorg-server-hwe-18.04)
| From: | "Leonidas S. Barbosa" <leo.barbosa@canonical.com> | |
| To: | ubuntu-security-announce@lists.ubuntu.com | |
| Subject: | [USN-7299-2] X.Org X Server vulnerabilities | |
| Date: | Mon, 10 Mar 2025 08:34:36 -0300 | |
| Message-ID: | <20250310113436.GA1833168@d4rkl41n> |
========================================================================== Ubuntu Security Notice USN-7299-2 March 10, 2025 xorg-server, xorg-server-hwe-16.04, xorg-server-hwe-18.04 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: Several security issues were fixed in X.Org X Server. Software Description: - xorg-server: X.Org X11 server - xorg-server-hwe-18.04: X.Org X11 server - xorg-server-hwe-16.04: X.Org X11 server Details: USN-7299-1 fixed several vulnerabilities in X.Org. This update provides the corresponding update for Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. Original advisory details: Jan-Niklas Sohn discovered that the X.Org X Server incorrectly handled certain memory operations. An attacker could use these issues to cause the X Server to crash, leading to a denial of service, or possibly execute arbitrary code. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS xserver-xorg-core 2:1.19.6-1ubuntu4.15+esm10 Available with Ubuntu Pro xserver-xorg-core-hwe-18.04 2:1.20.8-2ubuntu2.2~18.04.11+esm2 Available with Ubuntu Pro xwayland 2:1.19.6-1ubuntu4.15+esm10 Available with Ubuntu Pro xwayland-hwe-18.04 2:1.20.8-2ubuntu2.2~18.04.11+esm2 Available with Ubuntu Pro Ubuntu 16.04 LTS xserver-xorg-core 2:1.18.4-0ubuntu0.12+esm15 Available with Ubuntu Pro xserver-xorg-core-hwe-16.04 2:1.19.6-1ubuntu4.1~16.04.6+esm7 Available with Ubuntu Pro xwayland 2:1.18.4-0ubuntu0.12+esm15 Available with Ubuntu Pro xwayland-hwe-16.04 2:1.19.6-1ubuntu4.1~16.04.6+esm7 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7299-2 https://ubuntu.com/security/notices/USN-7299-1 CVE-2025-26594, CVE-2025-26595, CVE-2025-26596, CVE-2025-26597, CVE-2025-26598, CVE-2025-26599, CVE-2025-26600, CVE-2025-26601
Attachment: signature.asc (type=application/pgp-signature)
-----BEGIN PGP SIGNATURE----- iQIzBAABCgAdFiEEf+ebRFcoyOoAQoOeRbznW4QLH2kFAmfOzkgACgkQRbznW4QL H2m+CA//UgOvOlyLFpMOKhRBubeDF7KYcGig2lsZLevDo6KQVgFG016Xz60zwXsE 4PNF+wI5mhz200o/cD0AlXpcI/1GYUMDVyIEHxvz5lGLWPUk83ICJgQBlFkjQIoe Y6WNpcLJMTQKZjEhJaCIXKgUpyRuT1r4A/cvGabuPAAo50lihEAoSk0C7XdGaC7L kv+5W5MlxxA5ilM9r39Dc2PWbEwHfN8Cy3ych2MR48h8ZwhJXzu59iW4OCJobcB2 BEiw/yBpY8JTojfm1u0LaJWeSKEQCc4IQysCcQ7bYjbcZ5hAsTSuLC3weQsIB9Qy m7FVHDcE4BLKT42ccF/F5p+X9eBoJM659/VrUY2uirCW0ixKv6D26+rcFgbBTjg1 AtYkBFNkKEx2oI9+iC4rU8Xjp4bmaYWAdeVu26hDMlVjrcXwMHlIcNzL71uwrQ4G 5wMZgwgA0I5wMwMeqoe13WUrVlo6V4m4wZ2HyABH/7ttOcLNelF/1hw+io/ZWHxJ rwNEbR7jT2QT8VUwmmLLpadjH9Jm5E2LBWrYofH00IiPl/0xT0iTl7njHSshSsER KsLjwR9RD59HCIMN9rHMrKuFhkbxguvXOivTuaA7+HNomUlG6+PyT+OBg1CyJLhR mOuV2cCjZILcDhnbV7OSiw6lAtb84NSgvZVsKaPcUJHyLllTpRE= =wJSD -----END PGP SIGNATURE-----
Attachment: None (type=text/plain)
