ELSA-2020-3875

ELSA-2020-3875 - tigervnc security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2020-10-06

Description


[1.8.0-21]
- Add upstream patch needed because of previous security fixes
Resolves: bz#1826822

[1.8.0-20]
- Fix stack buffer overflow in CMsgReader::readSetCursor
Resolves: bz#1791773

- Fix heap buffer overflow in DecodeManager::decodeRect
Resolves: bz#1791768

- Fix heap buffer overflow in TightDecoder::FilterGradient
Resolves: bz#1791763

- Fix heap-based buffer overflow triggered from CopyRectDecoder
Resolves: bz#1791747

- Fix stack use-after-return due to incorrect usage of stack memory in ZRLEDecoder
Resolves: bz#1791759

- Add option to fallback to empty port when the specified one is taken
Resolves: bz#1791996


Related CVEs


CVE-2019-15694
CVE-2019-15691
CVE-2019-15692
CVE-2019-15693
CVE-2019-15695

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (aarch64) tigervnc-1.8.0-21.el7.src.rpm136e81a0b2e5d4401daf26a475303a13ELBA-2020-5005
tigervnc-1.8.0-21.el7.aarch64.rpm1c64e74d814c6ce9b7716c5d4c1dbb41ELBA-2020-5005
tigervnc-icons-1.8.0-21.el7.noarch.rpmb5205a1d0a5430bcc089f35fee5b8ab2ELBA-2020-5005
tigervnc-license-1.8.0-21.el7.noarch.rpm314f16588aba9d5c3b17164c94d09a12ELBA-2020-5005
tigervnc-server-1.8.0-21.el7.aarch64.rpm8d494042cac0e9e8ec8bf61a874e0b53ELBA-2020-5005
tigervnc-server-applet-1.8.0-21.el7.noarch.rpmec555cc04b6c2fa517c327205a5cd471ELBA-2020-5005
tigervnc-server-minimal-1.8.0-21.el7.aarch64.rpm68cd88815ceb80a0212274c8a8da6747ELBA-2020-5005
tigervnc-server-module-1.8.0-21.el7.aarch64.rpmedc438e6e9874d84eb42c5ffca867e0fELBA-2020-5005
Oracle Linux 7 (x86_64) tigervnc-1.8.0-21.el7.src.rpm136e81a0b2e5d4401daf26a475303a13ELBA-2020-5005
tigervnc-1.8.0-21.el7.x86_64.rpm80183b504efda3e60fd6bed3910dc739ELBA-2020-5005
tigervnc-icons-1.8.0-21.el7.noarch.rpmb5205a1d0a5430bcc089f35fee5b8ab2ELBA-2020-5005
tigervnc-license-1.8.0-21.el7.noarch.rpm314f16588aba9d5c3b17164c94d09a12ELBA-2020-5005
tigervnc-server-1.8.0-21.el7.x86_64.rpmf0c23456929db5f117e2d89d8c2e5431ELBA-2020-5005
tigervnc-server-applet-1.8.0-21.el7.noarch.rpmec555cc04b6c2fa517c327205a5cd471ELBA-2020-5005
tigervnc-server-minimal-1.8.0-21.el7.x86_64.rpmdfe079a955fd4d2bd05f94620a7edcc6ELBA-2020-5005
tigervnc-server-module-1.8.0-21.el7.x86_64.rpm388c14b690f8fa4ba1f486383a2830feELBA-2020-5005



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete