Debian Security Advisory

DLA-120-1 xorg-server -- LTS security update

Date Reported:
22 Dec 2014
Affected Packages:
xorg-server
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2014-8091, CVE-2014-8092, CVE-2014-8093, CVE-2014-8094, CVE-2014-8095, CVE-2014-8096, CVE-2014-8097, CVE-2014-8098, CVE-2014-8099, CVE-2014-8100, CVE-2014-8101, CVE-2014-8102.
More information:

This advisory has been superseded by DLA-120-2. For reference, the original advisory text follows.

Ilja van Sprundel of IOActive discovered several security issues in the X.org X server, which may lead to privilege escalation or denial of service.

For the oldstable distribution (squeeze), these problems have been fixed in version 2:1.7.7-18+deb6u1.

We recommend that you upgrade your xorg-server packages.