Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-2298

Опубликовано: 02 мая 2024
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2024-2298: tigervnc security update (IMPORTANT)

[1.13.1-8]

  • Fix copy/paste error in the DeviceStateNotify Resolves: RHEL-20533

[1.13.1-7]

  • Fix CVE-2024-21886 tigervnc: xorg-x11-server: heap buffer overflow in DisableDevice Resolves: RHEL-20389
  • Fix CVE-2024-21885 tigervnc: xorg-x11-server: heap buffer overflow in XISendDeviceHierarchyEvent Resolves: RHEL-20383
  • Fix CVE-2024-0229 tigervnc: xorg-x11-server: reattaching to different master device may lead to out-of-bounds memory access Resolves: RHEL-20533
  • Fix CVE-2023-6816 tigervnc: xorg-x11-server: Heap buffer overflow in DeviceFocusEvent and ProcXIQueryPointer Resolves: RHEL-21213

[1.13.1-6]

  • Use dup() to get available file descriptor when using -inetd option Resolves: RHEL-19858

[1.13.1-5]

  • Fix CVE-2023-6377 tigervnc: xorg-x11-server: out-of-bounds memory reads/writes in XKB button actions Resolves: RHEL-18414
  • Fix CVE-2023-6478 tigervnc: xorg-x11-server: out-of-bounds memory read in RRChangeOutputProperty and RRChangeProviderProperty Resolves: RHEL-18426

[1.13.1-4]

  • Fix CVE-2023-5380 tigervnc: xorg-x11-server: Use-after-free bug in DestroyWindow Resolves: RHEL-15237

  • Fix CVE-2023-5367 tigervnc: xorg-x11-server: Out-of-bounds write in XIChangeDeviceProperty/RRChangeOutputProperty Resolves: RHEL-15249

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

tigervnc

1.13.1-8.el9

tigervnc-icons

1.13.1-8.el9

tigervnc-license

1.13.1-8.el9

tigervnc-selinux

1.13.1-8.el9

tigervnc-server

1.13.1-8.el9

tigervnc-server-minimal

1.13.1-8.el9

tigervnc-server-module

1.13.1-8.el9

Oracle Linux x86_64

tigervnc

1.13.1-8.el9

tigervnc-icons

1.13.1-8.el9

tigervnc-license

1.13.1-8.el9

tigervnc-selinux

1.13.1-8.el9

tigervnc-server

1.13.1-8.el9

tigervnc-server-minimal

1.13.1-8.el9

tigervnc-server-module

1.13.1-8.el9

Связанные CVE

Связанные уязвимости

suse-cvrf
больше 1 года назад

Security update for xorg-x11-server

suse-cvrf
больше 1 года назад

Security update for xorg-x11-server

suse-cvrf
больше 1 года назад

Security update for xorg-x11-server

suse-cvrf
больше 1 года назад

Security update for xorg-x11-server

CVSS3: 7.8
redos
больше 1 года назад

Множественные уязвимости xorg-x11-server-Xorg