[Git][security-tracker-team/security-tracker][master] Add CVE-2021-34557/xscreensaver

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Jun 10 20:50:14 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1e318b07 by Salvatore Bonaccorso at 2021-06-10T21:48:58+02:00
Add CVE-2021-34557/xscreensaver

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -7036,6 +7036,11 @@ CVE-2021-3506 (An out-of-bounds (OOB) memory access flaw was found in fs/f2fs/no
 	[stretch] - linux <ignored> (f2fs is not supportable)
 	NOTE: https://www.openwall.com/lists/oss-security/2021/03/28/2
 	NOTE: https://lore.kernel.org/lkml/20210322114730.71103-1-yuchao0@huawei.com/
+CVE-2021-34557 [Disconnecting a video output can cause XScreenSaver to crash and unlock]
+	- xscreensaver 5.45+dfsg1-2 (bug #989508)
+	NOTE: https://www.openwall.com/lists/oss-security/2021/06/05/1
+	NOTE: https://www.openwall.com/lists/oss-security/2021/06/05/2
+	NOTE: https://github.com/QubesOS/qubes-xscreensaver/blob/master/0001-Fix-updating-outputs-info.patch
 CVE-2021-31523 (The Debian xscreensaver 5.42+dfsg1-1 package for XScreenSaver has cap_ ...)
 	- xscreensaver 5.45+dfsg1-2 (bug #987149)
 	[buster] - xscreensaver <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1e318b0723c7818b0b1f6e8773b42d045b37baab

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1e318b0723c7818b0b1f6e8773b42d045b37baab
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210610/274d9300/attachment.htm>


More information about the debian-security-tracker-commits mailing list