[09:16] lightdm login screen doesn't seem to switch the display off after awhile [12:37] mlankhorst: fyi, I'm preparing xorg-server security updates, and they will collide with stuff in -proposed unfortunately [12:37] mlankhorst: I can rebase the stuff in -proposed when I'm done if you'd like [12:38] mdeslaur: CVE-2013-4396? [12:38] Use-after-free vulnerability in the doImageText function in dix/dixfonts.c in the xorg-server module before 1.14.4 in X.Org X11 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted ImageText request that triggers memory-allocation failure. (http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4396) [12:38] tjaalton: that and CVE-2013-1056 in our xkb caching patch [12:38] ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. (http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1056) [12:38] I uploaded that one yesterday and it got through aiui [12:39] tjaalton: for saucy yes, I'm doing the stable releases [12:39] ah [12:39] tjaalton: thanks for saucy btw [12:39] yeah I forgot about the stable ones :) [12:40] mdeslaur: eep stable releases :) [12:40] mlankhorst: sorry for the collision, it's rather unfortunate and a PITA part of the security update process [12:41] yeah :/ [12:42] oh [12:43] yeah I had a few oem-priority fixes there.. [12:43] tjaalton: in raring-proposed? [12:43] tjaalton: or the one mlankhorst just uploaded to precise-proposed? [12:44] quantal [12:44] and the backport [12:44] to precise [12:44] 2:1.13.0-0ubuntu6.3 [12:45] tjaalton: if all goes well, I'll be publishing them tomorrow, so we can re-upload to -proposed after that [12:47] this one didn't even get accepted [12:47] yet [12:48] it depends how long it's going to take me to rebuild half of the backported raring stack into the -security pocket *sigh* [12:51] always fun :P [12:52] too bad we have to keep changelog history, it would be so much easier without..