ELSA-2023-2257

ELSA-2023-2257 - tigervnc security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2023-05-15

Description


[1.12.0-13]
- xorg-x11-server: X.Org Server Overlay Window Use-After-Free Local Privilege Escalation Vulnerability
Resolves: bz#2180309

[1.12.0-12]
- SELinux: allow vncsession create .vnc directory
Resolves: bz#2164703

[1.12.0-11]
- Add sanity check when cleaning up keymap changes
Resolves: bz#2169965

[1.12.0-10]
- xorg-x11-server: DeepCopyPointerClasses use-after-free leads to privilege elevation
Resolves: bz#2167061

[1.12.0-9]
- Rebuild for xorg-x11-server CVE-2022-46340 follow up fix

[1.12.0-8]
- Rebuild for xorg-x11-server CVEs
Resolves: CVE-2022-4283 (bz#2154234)
Resolves: CVE-2022-46340 (bz#2154221)
Resolves: CVE-2022-46341 (bz#2154224)
Resolves: CVE-2022-46342 (bz#2154226)
Resolves: CVE-2022-46343 (bz#2154228)
Resolves: CVE-2022-46344 (bz#2154230)

[1.12.0-7]
- x0vncserver: add new keysym in case we don't find matching keycode
+ actually apply the patch
Resolves: bz#2119017

[1.12.0-6]
- x0vncserver: add new keysym in case we don't find matching keycode
Resolves: bz#2119017


Related CVEs


CVE-2022-46340
CVE-2022-4283
CVE-2022-46341
CVE-2022-46343
CVE-2022-46344
CVE-2022-46342

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 9 (aarch64) tigervnc-1.12.0-13.el9_2.src.rpm991b623ceb4f242268f76051622beec4-
tigervnc-1.12.0-13.el9_2.aarch64.rpm4ae5abf437195f5bb81e5e0f51a657de-
tigervnc-icons-1.12.0-13.el9_2.noarch.rpmcaeeb833b5118f4058604d8d7bd03c0d-
tigervnc-license-1.12.0-13.el9_2.noarch.rpm6d68f030c8145303e2426f96f9db1e75-
tigervnc-selinux-1.12.0-13.el9_2.noarch.rpm1d155fe9c7e4802232012b550b2c7c03-
tigervnc-server-1.12.0-13.el9_2.aarch64.rpme166aece476c99afdf2381a535b9a725-
tigervnc-server-minimal-1.12.0-13.el9_2.aarch64.rpm7a641000db2790aeb870202a7a5bf3d2-
tigervnc-server-module-1.12.0-13.el9_2.aarch64.rpma25ee10ec0a8598bf05f7292e979d861-
Oracle Linux 9 (x86_64) tigervnc-1.12.0-13.el9_2.src.rpm991b623ceb4f242268f76051622beec4-
tigervnc-1.12.0-13.el9_2.x86_64.rpm49ef27024ea14b2c38d983fb35f23fe1-
tigervnc-icons-1.12.0-13.el9_2.noarch.rpmcaeeb833b5118f4058604d8d7bd03c0d-
tigervnc-license-1.12.0-13.el9_2.noarch.rpm6d68f030c8145303e2426f96f9db1e75-
tigervnc-selinux-1.12.0-13.el9_2.noarch.rpm1d155fe9c7e4802232012b550b2c7c03-
tigervnc-server-1.12.0-13.el9_2.x86_64.rpm3abe0029e14d7e8b5bee8909d7bd6c5d-
tigervnc-server-minimal-1.12.0-13.el9_2.x86_64.rpmc7ce4ac71b9038c46debbd1dd3a2c3ae-
tigervnc-server-module-1.12.0-13.el9_2.x86_64.rpmcac9b35d2733eee697226a16466905f0-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete