[Bug 291134] x11-servers/xwayland: update to 24.1.9 to fix CVEs

[email protected]
Newsgroups gmane.os.freebsd.devel.x11
Message-ID <[email protected]/bugzilla/>
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=291134

            Bug ID: 291134
           Summary: x11-servers/xwayland: update to 24.1.9 to fix CVEs
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Many People
          Priority: ---
         Component: Individual Port(s)
          Assignee: [email protected]
          Reporter: [email protected]
          Assignee: [email protected]
             Flags: maintainer-feedback?([email protected])

xwayland is currently vulnerable to:

CVE-2025-62229 - Use after free within xorg server
CVE-2025-62230 - Use after free within xorg server keyboard extension
CVE-2025-62231 - Overflow leading to memory corruption within xorg server
keyboard extension

These have been published on vuxml at the beginning of the month:
https://www.vuxml.org/freebsd/e99a32c8-b8e2-11f0-8510-b42e991fc52e.html

-- 
You are receiving this mail because:
You are the assignee for the bug.
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.