Oval Definition:oval:com.redhat.rhsa:def:20050501
Revision Date:2005-09-15Version:502
Title:RHSA-2005:501: XFree86 security update (Important)
Description:XFree86 is an implementation of the X Window System, which provides the core functionality for the Linux graphical desktop.

Several integer overflow bugs were found in the way XFree86 parses pixmap images. It is possible for a user to gain elevated privileges by loading a specially crafted pixmap image. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2005-2495 to this issue.

Additionally this update adds the following new features in this release: - Support for ATI RN50/ES1000 chipsets has been added.

The following bugs were also fixed in this release: - A problem with the X server's module loading system that led to cache incoherency on the Itanium architecture.

- The X server's PCI config space accesses caused contention with the kernel if accesses occurred while the kernel lock was held.

- X font server (xfs) crashed when accessing Type 1 fonts via showfont.

- A problem with the X transport library prevented X applications from starting if the hostname started with a digit.

- An issue where refresh rates were being restricted to 60Hz on some Intel i8xx systems

Users of XFree86 should upgrade to these updated packages, which contain a backported patch and are not vulnerable to this issue.
Family:unixClass:patch
Status:Reference(s):CVE-2005-2495
RHSA-2005:501-01
Platform(s):Red Hat Enterprise Linux 3
Product(s):
Definition Synopsis
  • Red Hat Enterprise Linux 3 is installed
  • AND Package Information
  • XFree86-ISO8859-15-100dpi-fonts is earlier than 0:4.3.0-95.EL
  • AND XFree86-ISO8859-15-100dpi-fonts is signed with Red Hat master key
  • OR
  • XFree86-xdm is earlier than 0:4.3.0-95.EL
  • AND XFree86-xdm is signed with Red Hat master key
  • OR
  • XFree86-ISO8859-9-75dpi-fonts is earlier than 0:4.3.0-95.EL
  • AND XFree86-ISO8859-9-75dpi-fonts is signed with Red Hat master key
  • OR
  • XFree86-ISO8859-2-75dpi-fonts is earlier than 0:4.3.0-95.EL
  • AND XFree86-ISO8859-2-75dpi-fonts is signed with Red Hat master key
  • OR
  • XFree86-libs-data is earlier than 0:4.3.0-95.EL
  • AND XFree86-libs-data is signed with Red Hat master key
  • OR
  • XFree86-doc is earlier than 0:4.3.0-95.EL
  • AND XFree86-doc is signed with Red Hat master key
  • OR
  • XFree86-cyrillic-fonts is earlier than 0:4.3.0-95.EL
  • AND XFree86-cyrillic-fonts is signed with Red Hat master key
  • OR
  • XFree86-ISO8859-2-100dpi-fonts is earlier than 0:4.3.0-95.EL
  • AND XFree86-ISO8859-2-100dpi-fonts is signed with Red Hat master key
  • OR
  • XFree86 is earlier than 0:4.3.0-95.EL
  • AND XFree86 is signed with Red Hat master key
  • OR
  • XFree86-Mesa-libGL is earlier than 0:4.3.0-95.EL
  • AND XFree86-Mesa-libGL is signed with Red Hat master key
  • OR
  • XFree86-truetype-fonts is earlier than 0:4.3.0-95.EL
  • AND XFree86-truetype-fonts is signed with Red Hat master key
  • OR
  • XFree86-libs is earlier than 0:4.3.0-95.EL
  • AND XFree86-libs is signed with Red Hat master key
  • OR
  • XFree86-sdk is earlier than 0:4.3.0-95.EL
  • AND XFree86-sdk is signed with Red Hat master key
  • OR
  • XFree86-75dpi-fonts is earlier than 0:4.3.0-95.EL
  • AND XFree86-75dpi-fonts is signed with Red Hat master key
  • OR
  • XFree86-xfs is earlier than 0:4.3.0-95.EL
  • AND XFree86-xfs is signed with Red Hat master key
  • OR
  • XFree86-Xnest is earlier than 0:4.3.0-95.EL
  • AND XFree86-Xnest is signed with Red Hat master key
  • OR
  • XFree86-ISO8859-14-75dpi-fonts is earlier than 0:4.3.0-95.EL
  • AND XFree86-ISO8859-14-75dpi-fonts is signed with Red Hat master key
  • OR
  • XFree86-syriac-fonts is earlier than 0:4.3.0-95.EL
  • AND XFree86-syriac-fonts is signed with Red Hat master key
  • OR
  • XFree86-ISO8859-15-75dpi-fonts is earlier than 0:4.3.0-95.EL
  • AND XFree86-ISO8859-15-75dpi-fonts is signed with Red Hat master key
  • OR
  • XFree86-ISO8859-9-100dpi-fonts is earlier than 0:4.3.0-95.EL
  • AND XFree86-ISO8859-9-100dpi-fonts is signed with Red Hat master key
  • OR
  • XFree86-Mesa-libGLU is earlier than 0:4.3.0-95.EL
  • AND XFree86-Mesa-libGLU is signed with Red Hat master key
  • OR
  • XFree86-100dpi-fonts is earlier than 0:4.3.0-95.EL
  • AND XFree86-100dpi-fonts is signed with Red Hat master key
  • OR
  • XFree86-ISO8859-14-100dpi-fonts is earlier than 0:4.3.0-95.EL
  • AND XFree86-ISO8859-14-100dpi-fonts is signed with Red Hat master key
  • OR
  • XFree86-base-fonts is earlier than 0:4.3.0-95.EL
  • AND XFree86-base-fonts is signed with Red Hat master key
  • OR
  • XFree86-font-utils is earlier than 0:4.3.0-95.EL
  • AND XFree86-font-utils is signed with Red Hat master key
  • OR
  • XFree86-tools is earlier than 0:4.3.0-95.EL
  • AND XFree86-tools is signed with Red Hat master key
  • OR
  • XFree86-Xvfb is earlier than 0:4.3.0-95.EL
  • AND XFree86-Xvfb is signed with Red Hat master key
  • OR
  • XFree86-twm is earlier than 0:4.3.0-95.EL
  • AND XFree86-twm is signed with Red Hat master key
  • OR
  • XFree86-xauth is earlier than 0:4.3.0-95.EL
  • AND XFree86-xauth is signed with Red Hat master key
  • OR
  • XFree86-devel is earlier than 0:4.3.0-95.EL
  • AND XFree86-devel is signed with Red Hat master key
  • BACK