]> code.ossystems Code Review - openembedded-core.git/commit
xserver-xorg: whitelist two CVEs
authorRoss Burton <ross@burtonini.com>
Mon, 10 Jan 2022 12:19:32 +0000 (12:19 +0000)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Tue, 11 Jan 2022 10:50:03 +0000 (10:50 +0000)
commitafa2e6c31a79f75ff4113d53f618bbb349cd6c17
treef3d1579c7c9bfda013d27f124a0ed9b71681d580
parentf7b58d5a6681547735ba747f5872abf35c9fa2c1
xserver-xorg: whitelist two CVEs

CVE-2011-4613 is specific to Debian/Ubuntu.

CVE-2020-25697 is a non-trivial attack that may not actually be feasible
considering the default behaviour for clients is to exit if the
connection is lost.

Signed-off-by: Ross Burton <ross.burton@arm.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-graphics/xorg-xserver/xserver-xorg.inc