]> code.ossystems Code Review - openembedded-core.git/commit
xserver-xorg: whitelist two CVEs
authorRoss Burton <ross@burtonini.com>
Mon, 10 Jan 2022 12:19:32 +0000 (12:19 +0000)
committerAnuj Mittal <anuj.mittal@intel.com>
Fri, 14 Jan 2022 07:59:32 +0000 (15:59 +0800)
commitcd14ceef48aff3186abd0c32165827f99be26622
treea6112a3ff3c42c07d528a06cbf6ea97c9fa6cccb
parent53dc9b10eb5f064c68120337126f1542c1e0c832
xserver-xorg: whitelist two CVEs

CVE-2011-4613 is specific to Debian/Ubuntu.

CVE-2020-25697 is a non-trivial attack that may not actually be feasible
considering the default behaviour for clients is to exit if the
connection is lost.

Signed-off-by: Ross Burton <ross.burton@arm.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
(cherry picked from commit afa2e6c31a79f75ff4113d53f618bbb349cd6c17)
Signed-off-by: Anuj Mittal <anuj.mittal@intel.com>
meta/recipes-graphics/xorg-xserver/xserver-xorg.inc