Xserver 1.20.3 stable release

Bug #1811230 reported by Timo Aaltonen on 2019-01-10
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
xorg-server (Ubuntu)
Undecided
Unassigned
Bionic
Undecided
Unassigned
Cosmic
Undecided
Timo Aaltonen
xorg-server-hwe-18.04 (Ubuntu)
Undecided
Unassigned
Bionic
Undecided
Timo Aaltonen
Cosmic
Undecided
Unassigned

Bug Description

[Impact]
New upstream bugfix release for cosmic and bionic HWE backport.

Upstream changes:

1.20.2
Lots of bugfixes all over the map. Thanks to all for testing and
patches!

Adam Jackson (8):
      modesetting: Lie less in the man page
      modesetting: Document Option "DoubleShadow" in the man page
      xfree86: Fix Option "MaxClients" validation
      modesetting: Don't free(dst) in drmmode_prop_info_copy
      glamor_egl: Don't initialize on llvmpipe
      glamor/egl: Avoid crashing on broken configurations
      fbdevhw: Refuse to touch PCI devices on the fallback probe path
      xserver 1.20.2

Alex Goins (1):
      randr: rrCheckPixmapBounding should only increase screen size

Alexander Volkov (1):
      os/xdmcp: Don't create a new socket in XdmcpReset()

Cedric Roux (1):
      miext/damage: take care of the coordinate mode in damagePolyPoint

Dave Airlie (9):
      shm: move shmsize verify before allocating the drawable.
      xi: free modifiers_failed on error path. (v2)
      fboverlay: move bpp checks above malloc
      glamor: fix leak of fs_getcolor_source.
      modesetting: get pEnt after error checks
      posix_tty: free leak of xf86SetStrOption return value.
      xkb: fix what looks to be a copy-paste error with first vs firstMM
      mibltblt: free prgnSrcClip on error path.
      devices: break after finding and removing device from lists

Jim Qu (1):
      modesetting: code refactor for PRIME sync

Lionel Landwerlin (2):
      present: fix freed pointer access
      xwayland: fix access to invalid pointer

Olivier Fourdan (3):
      glx: check for indirect context in CreateContextAttribsARB()
      xwayland: Remove xwl_present_window from privates on cleanup
      xwayland: Use `double` for `xwl_tablet_tool`

Peter Hutterer (1):
      dix: check_modmap_change() returns Success, not true

Pierre Ossman (1):
      Switch automatic composite update to WorkQueue

Scott Anderson (1):
      xwayland: use wayland axis_discrete event

1.20.3:
Fixes CVE-2018-14665 (local file overwrite bugs), and a trivial fix in
fbdevhw initialization. All users are advised to upgrade. Thanks to
Narendra Shinde and Thomas Hoger for the report, and Matthieu Herrb for
the fix.

Adam Jackson (1):
      xserver 1.20.3

Matthieu Herrb (2):
      Disable -logfile and -modulepath when running with elevated privileges
      LogFilePrep: add a comment to the unsafe format string.

Peter Hutterer (1):
      xfree86: fix readlink call

[Test case]
Normal desktop usage.

[Regression potential]
This has been in disco for two months without any regressions filed, so it should be safe.

Timo Aaltonen (tjaalton) on 2019-01-10
Changed in xorg-server (Ubuntu):
status: New → Fix Released
Changed in xorg-server-hwe-18.04 (Ubuntu):
status: New → Invalid
Changed in xorg-server (Ubuntu Bionic):
status: New → Invalid
Changed in xorg-server-hwe-18.04 (Ubuntu Cosmic):
status: New → Invalid
Timo Aaltonen (tjaalton) on 2019-01-10
description: updated
Changed in xorg-server (Ubuntu Cosmic):
assignee: nobody → Timo Aaltonen (tjaalton)
Changed in xorg-server-hwe-18.04 (Ubuntu Bionic):
assignee: nobody → Timo Aaltonen (tjaalton)
To post a comment you must log in.
This report contains Public information  Edit
Everyone can see this information.

Other bug subscribers