Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 02 Aug 2022 17:24:41 +0000
From:      bugzilla-noreply@freebsd.org
To:        x11@FreeBSD.org
Subject:   [Bug 265244] [2022Q3] x11-servers/xorg-server: CVE-2022-2319 and CVE-2022-2320
Message-ID:  <bug-265244-7141-qMf1x7Xlk9@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-265244-7141@https.bugs.freebsd.org/bugzilla/>
References:  <bug-265244-7141@https.bugs.freebsd.org/bugzilla/>

next in thread | previous in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D265244

Jan Beich <jbeich@FreeBSD.org> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
            Summary|x11-servers/xorg-server:    |[2022Q3]
                   |CVE-2022-2319 and           |x11-servers/xorg-server:
                   |CVE-2022-2320               |CVE-2022-2319 and
                   |                            |CVE-2022-2320
              Flags|                            |merge-quarterly?

--- Comment #3 from Jan Beich <jbeich@FreeBSD.org> ---
After ports 88b0ae2bb9c6 main branch (/latest repo) is no longer affected.
2022Q3 branch (current /quarterly repo) is still afected, and 2022Q4 (future
/quarterly repo) won't branch from main until 2022-10-01. One could wait 2
months for both CVEs to evaporate but /quarterly is default on -RELEASEs and
was created for security backports in the first place.

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-265244-7141-qMf1x7Xlk9>