|
|
Log in / Subscribe / Register

Oracle alert ELSA-2026-19342 (tigervnc)

From:  Errata Announcements for Oracle Linux via El-errata <el-errata@oss.oracle.com>
To:  el-errata@oss.oracle.com
Subject:  [El-errata] ELSA-2026-19342 Important: Oracle Linux 9 tigervnc security update
Date:  Thu, 25 Jun 2026 22:00:02 -0700
Message-ID:  <mailman.88.1782450015.18.el-errata@oss.oracle.com>

Oracle Linux Security Advisory ELSA-2026-19342 http://linux.oracle.com/errata/ELSA-2026-19342.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: tigervnc-1.15.0-7.el9_8.1.x86_64.rpm tigervnc-icons-1.15.0-7.el9_8.1.noarch.rpm tigervnc-license-1.15.0-7.el9_8.1.noarch.rpm tigervnc-selinux-1.15.0-7.el9_8.1.noarch.rpm tigervnc-server-1.15.0-7.el9_8.1.x86_64.rpm tigervnc-server-minimal-1.15.0-7.el9_8.1.x86_64.rpm tigervnc-server-module-1.15.0-7.el9_8.1.x86_64.rpm aarch64: tigervnc-1.15.0-7.el9_8.1.aarch64.rpm tigervnc-icons-1.15.0-7.el9_8.1.noarch.rpm tigervnc-license-1.15.0-7.el9_8.1.noarch.rpm tigervnc-selinux-1.15.0-7.el9_8.1.noarch.rpm tigervnc-server-1.15.0-7.el9_8.1.aarch64.rpm tigervnc-server-minimal-1.15.0-7.el9_8.1.aarch64.rpm tigervnc-server-module-1.15.0-7.el9_8.1.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates/tigervnc-1.15.0-7... Related CVEs: CVE-2026-33999 CVE-2026-34000 CVE-2026-34001 CVE-2026-34003 CVE-2026-34352 Description of changes: [1.15.0-7.1] - Fix CVE-2026-33999, CVE-2026-34000, CVE-2026-34001, CVE-2026-34002, CVE-2026-34003 xorg-x11-server: various XKB and XSYNC vulnerabilities Resolves: RHEL-163213 Resolves: RHEL-163281 Resolves: RHEL-163267 - Fix CVE-2026-34352 Resolves: RHEL-167986 [1.15.0-7] - Fix CVE-2025-62229: xorg-x11-server: Use-after-free in XPresentNotify structures creation Resolves: RHEL-119989 - Fix CVE-2025-62230: xorg-x11-server: Use-after-free in Xkb client resource removal Resolves: RHEL-120009 - Fix CVE-2025-62231: xorg-x11-server: Value overflow in Xkb extension XkbSetCompatMap() Resolves: RHEL-120770 [1.15.0-5] - Fix CVE-2025-49175: xorg-x11-server: Out-of-Bounds Read in X Rendering Extension Animated Cursors Resolves: RHEL-97284 - Fix CVE-2025-49176: xorg-x11-server: Integer Overflow in Big Requests Extension Resolves: RHEL-97303 - Fix CVE-2025-49178: xorg-x11-server: Unprocessed Client Request Due to Bytes to Ignore Resolves: RHEL-97379 - Fix CVE-2025-49179: xorg-x11-server: Integer overflow in X Record extension Resolves: RHEL-97414 - Fix CVE-2025-49180: xorg-x11-server: Integer Overflow in X Resize, Rotate and Reflect (RandR) Extension Resolves: RHEL-97429 [1.15.0-4] - Fix broken authentication with x0vncserver Resolves: RHEL-93573 [1.15.0-3] - Only warn about 8 characters limit, but let it proceed Resolves: RHEL-89432 [1.15.0-2] - Fix inetd mode not working Resolves: RHEL-86511 [1.15.0-1] - 1.15.0 Resolves: RHEL-78617 - Add SELinux policy rules allowing to access /proc/sys/fs/nr_open Resolves: RHEL-77973 - Add SELinux policy rules allowing to create directories under /root Resolves: RHEL-77975 - Fix CVE-2025-26594 xorg-x11-server Use-after-free of the root cursor Resolves: RHEL-80208 - Fix CVE-2025-26595 xorg-x11-server Buffer overflow in XkbVModMaskText() Resolves: RHEL-80189 - Fix CVE-2025-26596 xorg-x11-server Heap overflow in XkbWriteKeySyms() Resolves: RHEL-80194 - Fix CVE-2025-26597 xorg-x11-server Buffer overflow in XkbChangeTypesOfKey() Resolves: RHEL-80196 - Fix CVE-2025-26598 xorg-x11-server Out-of-bounds write in CreatePointerBarrierClient() Resolves: RHEL-80197 - Fix CVE-2025-26599 xorg-x11-server Use of uninitialized pointer in compRedirectWindow() Resolves: RHEL-80206 - Fix CVE-2025-26600 xorg-x11-server Use-after-free in PlayReleasedEvents() Resolves: RHEL-80205 - Fix CVE-2025-26601 xorg-x11-server Use-after-free in SyncInitTrigger() Resolves: RHEL-80209 [1.14.1-4] - Fix crash in clipboard support in x0vncserver Resolves: RHEL-74216 [1.14.1-3] - Add clipboard support to x0vncserver Resolves: RHEL-74216 [1.14.1-2] - Fix CVE-2024-9632: xorg-x11-server: heap-based buffer overflow privilege escalation vulnerability Resolves: RHEL-62001 _______________________________________________ El-errata mailing list El-errata@oss.oracle.com https://oss.oracle.com/mailman/listinfo/el-errata


to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds