Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-1551

Опубликовано: 04 апр. 2023
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2023-1551: tigervnc security update (IMPORTANT)

[1.12.0-9.3]

  • xorg-x11-server: X.Org Server Overlay Window Use-After-Free Local Privilege Escalation Vulnerability Resolves: bz#2180304

[1.12.0-9.2]

  • Add sanity check when cleaning up keymap changes Resolves: bz#2169962

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

tigervnc

1.12.0-9.el8_7.3

tigervnc-icons

1.12.0-9.el8_7.3

tigervnc-license

1.12.0-9.el8_7.3

tigervnc-selinux

1.12.0-9.el8_7.3

tigervnc-server

1.12.0-9.el8_7.3

tigervnc-server-minimal

1.12.0-9.el8_7.3

tigervnc-server-module

1.12.0-9.el8_7.3

Oracle Linux x86_64

tigervnc

1.12.0-9.el8_7.3

tigervnc-icons

1.12.0-9.el8_7.3

tigervnc-license

1.12.0-9.el8_7.3

tigervnc-selinux

1.12.0-9.el8_7.3

tigervnc-server

1.12.0-9.el8_7.3

tigervnc-server-minimal

1.12.0-9.el8_7.3

tigervnc-server-module

1.12.0-9.el8_7.3

Связанные CVE

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 2 лет назад

A flaw was found in X.Org Server Overlay Window. A Use-After-Free may lead to local privilege escalation. If a client explicitly destroys the compositor overlay window (aka COW), the Xserver would leave a dangling pointer to that window in the CompScreen structure, which will trigger a use-after-free later.

CVSS3: 7.8
redhat
около 2 лет назад

A flaw was found in X.Org Server Overlay Window. A Use-After-Free may lead to local privilege escalation. If a client explicitly destroys the compositor overlay window (aka COW), the Xserver would leave a dangling pointer to that window in the CompScreen structure, which will trigger a use-after-free later.

CVSS3: 7.8
nvd
около 2 лет назад

A flaw was found in X.Org Server Overlay Window. A Use-After-Free may lead to local privilege escalation. If a client explicitly destroys the compositor overlay window (aka COW), the Xserver would leave a dangling pointer to that window in the CompScreen structure, which will trigger a use-after-free later.

CVSS3: 7.8
msrc
9 месяцев назад

Описание отсутствует

CVSS3: 7.8
debian
около 2 лет назад

A flaw was found in X.Org Server Overlay Window. A Use-After-Free may ...

Уязвимость ELSA-2023-1551