[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#145048: marked as done (libxt6: XtAppInitialize() SEGVs if an app-defaults file #includes itself)



Your message dated Sat, 25 May 2013 21:47:27 +0000
with message-id <E1UgMJD-0005kJ-P8@franck.debian.org>
and subject line Bug#145048: fixed in libx11 2:1.5.0-1+deb7u1
has caused the Debian Bug report #145048,
regarding libxt6: XtAppInitialize() SEGVs if an app-defaults file #includes itself
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact owner@bugs.debian.org
immediately.)


-- 
145048: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=145048
Debian Bug Tracking System
Contact owner@bugs.debian.org with problems
--- Begin Message ---
Package: xterm
Version: 4.1.0-16
Severity: normal

If I include "XTerm" in /etc/X11/app-defaults/XTerm itself, xterm
segfaults (reproduceable on two different machines):

# echo "#include \"XTerm\"" >> /etc/X11/app-defaults/XTerm && xterm
Speicherzugriffsfehler
#



-- System Information
Debian Release: 3.0
Architecture: i386
Kernel: Linux hosi.de 2.4.18 #2 Sam Mär 23 17:58:00 CET 2002 i686
Locale: LANG=de_DE@euro, LC_CTYPE=de_DE@euro

Versions of packages xterm depends on:
ii  debconf                  1.0.32          Debian configuration management sy
ii  libc6                    2.2.5-4         GNU C Library: Shared libraries an
ii  libfreetype6             2.0.9-1         FreeType 2 font engine, shared lib
ii  libncurses5              5.2.20020112a-7 Shared libraries for terminal hand
ii  libxaw7                  4.1.0-16        X Athena widget set library
ii  xlibs                    4.1.0-16        X Window System client libraries



--- End Message ---
--- Begin Message ---
Source: libx11
Source-Version: 2:1.5.0-1+deb7u1

We believe that the bug you reported is fixed in the latest version of
libx11, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 145048@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Julien Cristau <jcristau@debian.org> (supplier of updated libx11 package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Tue, 21 May 2013 23:14:14 +0200
Source: libx11
Binary: libx11-6 libx11-6-udeb libx11-data libx11-6-dbg libx11-dev libx11-xcb1 libx11-xcb1-dbg libx11-xcb-dev libx11-doc
Architecture: source all amd64
Version: 2:1.5.0-1+deb7u1
Distribution: wheezy-security
Urgency: high
Maintainer: Debian X Strike Force <debian-x@lists.debian.org>
Changed-By: Julien Cristau <jcristau@debian.org>
Description: 
 libx11-6   - X11 client-side library
 libx11-6-dbg - X11 client-side library (debug package)
 libx11-6-udeb - X11 client-side library (udeb)
 libx11-data - X11 client-side library
 libx11-dev - X11 client-side library (development headers)
 libx11-doc - X11 client-side library (development documentation)
 libx11-xcb-dev - Xlib/XCB interface library (development headers)
 libx11-xcb1 - Xlib/XCB interface library
 libx11-xcb1-dbg - Xlib/XCB interface library (debug package)
Closes: 145048
Changes: 
 libx11 (2:1.5.0-1+deb7u1) wheezy-security; urgency=high
 .
   * CVE-2013-1981: integer overflows calculating memory needs for replies
   * CVE-2013-1997: buffer overflows due to not validating length or offset
     values in replies
   * CVE-2013-2004: unbounded recursion parsing user-specified files
     (closes: #145048)
Checksums-Sha1: 
 b10244d2b2dccefd482c14626fd2877f503c5f90 2515 libx11_1.5.0-1+deb7u1.dsc
 7890e34641d44aec32628aa68867b97bc6abbe17 3073820 libx11_1.5.0.orig.tar.gz
 ff846e5086d276dfa951d71f1e49392e0a30d94d 105908 libx11_1.5.0-1+deb7u1.diff.gz
 9d55a80b4a4a674d86295cb51a00b315b2bc2ba0 189160 libx11-data_1.5.0-1+deb7u1_all.deb
 d5a4a1af8766003cb4925c0086ec1fbf303b3e55 3190550 libx11-doc_1.5.0-1+deb7u1_all.deb
 f7673b16c9d44825f027a5425b6a631058caa822 900144 libx11-6_1.5.0-1+deb7u1_amd64.deb
 beca6511da5560d3e60c3cab1bd33e2b26b9611e 555058 libx11-6-udeb_1.5.0-1+deb7u1_amd64.udeb
 88ecd8286ed05137f2beb6c309d280727aed3f72 3394282 libx11-6-dbg_1.5.0-1+deb7u1_amd64.deb
 cbe158bb4ca7a9382f893211748a9406ff7fac17 1038070 libx11-dev_1.5.0-1+deb7u1_amd64.deb
 166a5109b0b58c6869768486974dd33530d6d3cb 139384 libx11-xcb1_1.5.0-1+deb7u1_amd64.deb
 9289d447cac9bf322d84639b132e12ac863215e3 153266 libx11-xcb1-dbg_1.5.0-1+deb7u1_amd64.deb
 37f3cc66886e03e4f9743df59fe74793adb4393b 141316 libx11-xcb-dev_1.5.0-1+deb7u1_amd64.deb
Checksums-Sha256: 
 ca8d122702fdc9e9196a1234e0ac1a682f3cfc17a16c3edba8f4245ca3927c76 2515 libx11_1.5.0-1+deb7u1.dsc
 2ddc05170baf70dd650ee6108c5882eb657cafaf61a5b5261badb26703122518 3073820 libx11_1.5.0.orig.tar.gz
 97fc053476b02e5b05cd79b2dbd550064c06eac1fa65a0844fb4fe08a45cd140 105908 libx11_1.5.0-1+deb7u1.diff.gz
 1fce9b33bb752bc3418f89b889ce3008ba78cc5f55398833d915ad0066867761 189160 libx11-data_1.5.0-1+deb7u1_all.deb
 4bfd58a048c48bed865d99bee79fe4bda5a5eef6efb1f0e241f734672382fe98 3190550 libx11-doc_1.5.0-1+deb7u1_all.deb
 075ae64378209aa7609f7004e50899f2d2ffdf9bc43c00126c5a568b48c7cb21 900144 libx11-6_1.5.0-1+deb7u1_amd64.deb
 6b2239723cb56e4c968edef835ea0b7df36c1f2a6fd8b13ce491c639e03ffd68 555058 libx11-6-udeb_1.5.0-1+deb7u1_amd64.udeb
 b0b69c7441fdb6f441a64539176f27781a0982d31b7ab31af877f446ee5487a6 3394282 libx11-6-dbg_1.5.0-1+deb7u1_amd64.deb
 47de3e64357f983c279cb4ca472cefc31429e8474d6200925e4e2eb083f1a0c1 1038070 libx11-dev_1.5.0-1+deb7u1_amd64.deb
 b5c1227c5d5e5053d4c60f5dec1dc4065c41e97962d3cd672fb960ae1e39ddfa 139384 libx11-xcb1_1.5.0-1+deb7u1_amd64.deb
 eb60ff35fd2e84d30158d3b285c09eec4c3a30948e9f2f365bae4105dec89610 153266 libx11-xcb1-dbg_1.5.0-1+deb7u1_amd64.deb
 26d90888f9d8225a91ba0b3571da65f79e042dbaaad2ad93c901505eda495391 141316 libx11-xcb-dev_1.5.0-1+deb7u1_amd64.deb
Files: 
 afe67d1123c89807ec602f0a91f5f580 2515 x11 optional libx11_1.5.0-1+deb7u1.dsc
 395455e4d3a51459374fe5ca8420aae8 3073820 x11 optional libx11_1.5.0.orig.tar.gz
 59f32ef8b4d46bd6c6b569dbe6799c99 105908 x11 optional libx11_1.5.0-1+deb7u1.diff.gz
 863fbb4e0794229ec9359cf1f55f187a 189160 x11 optional libx11-data_1.5.0-1+deb7u1_all.deb
 30701318d67fa493807be32946947139 3190550 doc optional libx11-doc_1.5.0-1+deb7u1_all.deb
 017a8c49f6b02a7f2d6c4c8f3b855f1a 900144 libs optional libx11-6_1.5.0-1+deb7u1_amd64.deb
 4bcfb99a36d1ceb25de70bd6c4a8ebda 555058 debian-installer optional libx11-6-udeb_1.5.0-1+deb7u1_amd64.udeb
 b997bbf4562c2fb094eba7826b141544 3394282 debug extra libx11-6-dbg_1.5.0-1+deb7u1_amd64.deb
 a50dbb28899b0d34b649653b7b59cde0 1038070 libdevel optional libx11-dev_1.5.0-1+deb7u1_amd64.deb
 d19029234aeb6bf279bcc58b306973c7 139384 libs optional libx11-xcb1_1.5.0-1+deb7u1_amd64.deb
 3676e479d64e1b5dd1dd2916c7d82b51 153266 debug extra libx11-xcb1-dbg_1.5.0-1+deb7u1_amd64.deb
 a9283693fefd58f66ad45e34224c14e8 141316 libdevel optional libx11-xcb-dev_1.5.0-1+deb7u1_amd64.deb
Package-Type: udeb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)
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=Wuv/
-----END PGP SIGNATURE-----

--- End Message ---

Reply to: