--- b/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -76,6 +76,34 @@ Notes: * Do not forget port variants (linux-f10-libxml2, libxml2, etc.) --> + + wayland -- integer overflow + + + wayland + 1.19.0_1 + + + + +

Tobias Stoeckmann reports:

+
+

The libXcursor fix for CVE-2013-2003 has never been imported into wayland, leaving it vulnerable to it.

+
+ +
+ + CVE-2013-2003 + https://gitlab.freedesktop.org/wayland/wayland/-/merge_requests/133 + ports/256273 + + + 2021-05-02 + 2021-05-31 + +
+ FreeBSD -- Missing message validation in libradius(3)