[Git][security-tracker-team/security-tracker][master] Add new xorg-server issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Oct 28 14:20:34 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a923efe4 by Salvatore Bonaccorso at 2025-10-28T15:19:58+01:00
Add new xorg-server issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,29 @@
+CVE-2025-62231
+	- xorg-server <unfixed>
+	- xwayland <unfixed>
+	[trixie] - xwayland <ignored> (Minor issue; Xwayland shouldn't be running as root)
+	[bookworm] - xwayland <ignored> (Minor issue; Xwayland shouldn't be running as root)
+	NOTE: https://lists.x.org/archives/xorg-announce/2025-October/003635.html
+	NOTE: Fixed by: https://gitlab.freedesktop.org/xorg/xserver/-/commit/475d9f49acd0e55bc0b089ed77f732ad18585470
+	NOTE: Fixed by: https://gitlab.freedesktop.org/xorg/xserver/-/commit/3baad99f9c15028ed8c3e3d8408e5ec35db155aa (xorg-server-21.1.19)
+CVE-2025-62230
+	- xorg-server <unfixed>
+	- xwayland <unfixed>
+	[trixie] - xwayland <ignored> (Minor issue; Xwayland shouldn't be running as root)
+	[bookworm] - xwayland <ignored> (Minor issue; Xwayland shouldn't be running as root)
+	NOTE: https://lists.x.org/archives/xorg-announce/2025-October/003635.html
+	NOTE: Fixed by: https://gitlab.freedesktop.org/xorg/xserver/-/commit/99790a2c9205a52fbbec01f21a92c9b7f4ed1d8f
+	NOTE: Fixed by: https://gitlab.freedesktop.org/xorg/xserver/-/commit/10c94238bdad17c11707e0bdaaa3a9cd54c504be
+	NOTE: Fixed by: https://gitlab.freedesktop.org/xorg/xserver/-/commit/865089ca70840c0f13a61df135f7b44a9782a175 (xorg-server-21.1.19)
+	NOTE: Fixed by: https://gitlab.freedesktop.org/xorg/xserver/-/commit/87fe2553937a99fd914ad0cde999376a3adc3839 (xorg-server-21.1.19)
+CVE-2025-62229
+	- xorg-server <unfixed>
+	- xwayland <unfixed>
+	[trixie] - xwayland <ignored> (Minor issue; Xwayland shouldn't be running as root)
+	[bookworm] - xwayland <ignored> (Minor issue; Xwayland shouldn't be running as root)
+	NOTE: https://lists.x.org/archives/xorg-announce/2025-October/003635.html
+	NOTE: Fixed by: https://gitlab.freedesktop.org/xorg/xserver/-/commit/5a4286b13f631b66c20f5bc8db7b68211dcbd1d0
+	NOTE: Fixed by: https://gitlab.freedesktop.org/xorg/xserver/-/commit/554dfabfbc23c3e74997e09c13f5424a60daf9ee (xorg-server-21.1.19)
 CVE-2025-62793 (eLabFTW is an open source electronic lab notebook for research labs. T ...)
 	NOT-FOR-US: eLabFTW
 CVE-2025-62784 (InventoryGui is a library for creating chest GUIs for Bukkit/Spigot pl ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a923efe47937e6f3effdf05bb3790cbcac0b351e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a923efe47937e6f3effdf05bb3790cbcac0b351e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251028/19bd4c75/attachment.htm>


More information about the debian-security-tracker-commits mailing list