maintainer-feedback requested: [Bug 291134] x11-servers/xwayland: update to 24.1.9 to fix CVEs
| Newsgroups | gmane.os.freebsd.devel.x11 |
|---|---|
| Message-ID | <[email protected]/bugzilla/> |
Bugzilla Automation <[email protected]> has asked freebsd-x11 (Nobody) <[email protected]> for maintainer-feedback: Bug 291134: x11-servers/xwayland: update to 24.1.9 to fix CVEs https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=291134 --- Description --- xwayland is currently vulnerable to: CVE-2025-62229 - Use after free within xorg server CVE-2025-62230 - Use after free within xorg server keyboard extension CVE-2025-62231 - Overflow leading to memory corruption within xorg server keyboard extension These have been published on vuxml at the beginning of the month: https://www.vuxml.org/freebsd/e99a32c8-b8e2-11f0-8510-b42e991fc52e.html