Debian Security Advisory
DLA-660-1 libxrandr -- LTS security update
- Date Reported:
- 17 Oct 2016
- Affected Packages:
- libxrandr
- Vulnerable:
- Yes
- Security database references:
- In the Debian bugtracking system: Bug 840441.
In Mitre's CVE dictionary: CVE-2016-7947, CVE-2016-7948. - More information:
-
Insufficient validation of data from the X server in libxrandr before v1.5.0 can cause out of boundary memory writes and integer overflows.
For Debian 7
Wheezy
, these problems have been fixed in version 2:1.3.2-2+deb7u2.We recommend that you upgrade your libxrandr packages.
Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS