<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="75a32e4e4e2b032f558b96eb5c932d65"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="155">
  <id>xgl</id>
  <title>xgl: Fixes for security vulnerabilities in included X server.</title>
  <release>openSUSE 11.0</release>
  <issued date="1218760585"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=387544" id="387544" title="bug number 387544" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=332447" id="332447" title="bug number 332447" type="bugzilla"/>
  </references>
  <description>This update fixes multiple vulnerabilities reported by
iDefense for the included X server:
- CVE-2008-2360 - RENDER Extension heap buffer overflow
- CVE-2008-2361 - RENDER Extension crash
- CVE-2008-2362 - RENDER Extension memory corruption 
- CVE-2008-1379 - MIT-SHM arbitrary memory read
- CVE-2008-1377 - RECORD and Security extensions  memory
  corruption
</description>
  <pkglist>
    <collection>
        <package name="xgl" arch="i586" version="git_071026" release="79.3">
          <filename>xgl-git_071026-79.3.i586.rpm</filename>
        </package>
        <package name="xgl" arch="ppc" version="git_071026" release="79.3">
          <filename>xgl-git_071026-79.3.ppc.rpm</filename>
        </package>
        <package name="xgl" arch="x86_64" version="git_071026" release="79.3">
          <filename>xgl-git_071026-79.3.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
