Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-1592

Опубликовано: 04 апр. 2023
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2023-1592: tigervnc security update (IMPORTANT)

[1.12.0-5.2]

  • xorg-x11-server: X.Org Server Overlay Window Use-After-Free Local Privilege Escalation Vulnerability Resolves: bz#2180308

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

tigervnc

1.12.0-5.el9_1.2

tigervnc-icons

1.12.0-5.el9_1.2

tigervnc-license

1.12.0-5.el9_1.2

tigervnc-selinux

1.12.0-5.el9_1.2

tigervnc-server

1.12.0-5.el9_1.2

tigervnc-server-minimal

1.12.0-5.el9_1.2

tigervnc-server-module

1.12.0-5.el9_1.2

Oracle Linux x86_64

tigervnc

1.12.0-5.el9_1.2

tigervnc-icons

1.12.0-5.el9_1.2

tigervnc-license

1.12.0-5.el9_1.2

tigervnc-selinux

1.12.0-5.el9_1.2

tigervnc-server

1.12.0-5.el9_1.2

tigervnc-server-minimal

1.12.0-5.el9_1.2

tigervnc-server-module

1.12.0-5.el9_1.2

Связанные CVE

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 2 лет назад

A flaw was found in X.Org Server Overlay Window. A Use-After-Free may lead to local privilege escalation. If a client explicitly destroys the compositor overlay window (aka COW), the Xserver would leave a dangling pointer to that window in the CompScreen structure, which will trigger a use-after-free later.

CVSS3: 7.8
redhat
около 2 лет назад

A flaw was found in X.Org Server Overlay Window. A Use-After-Free may lead to local privilege escalation. If a client explicitly destroys the compositor overlay window (aka COW), the Xserver would leave a dangling pointer to that window in the CompScreen structure, which will trigger a use-after-free later.

CVSS3: 7.8
nvd
около 2 лет назад

A flaw was found in X.Org Server Overlay Window. A Use-After-Free may lead to local privilege escalation. If a client explicitly destroys the compositor overlay window (aka COW), the Xserver would leave a dangling pointer to that window in the CompScreen structure, which will trigger a use-after-free later.

CVSS3: 7.8
msrc
9 месяцев назад

Описание отсутствует

CVSS3: 7.8
debian
около 2 лет назад

A flaw was found in X.Org Server Overlay Window. A Use-After-Free may ...