Oracle alert ELSA-2024-0006 (tigervnc)
From: | Errata Announcements for Oracle Linux via El-errata <el-errata@oss.oracle.com> | |
To: | el-errata@oss.oracle.com | |
Subject: | [El-errata] ELSA-2024-0006 Important: Oracle Linux 7 tigervnc security update | |
Date: | Wed, 03 Jan 2024 07:24:29 -0800 | |
Message-ID: | <mailman.372.1704295484.15089.el-errata@oss.oracle.com> |
Oracle Linux Security Advisory ELSA-2024-0006 http://linux.oracle.com/errata/ELSA-2024-0006.html The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: x86_64: tigervnc-1.8.0-28.0.1.el7_9.x86_64.rpm tigervnc-icons-1.8.0-28.0.1.el7_9.noarch.rpm tigervnc-license-1.8.0-28.0.1.el7_9.noarch.rpm tigervnc-server-1.8.0-28.0.1.el7_9.x86_64.rpm tigervnc-server-applet-1.8.0-28.0.1.el7_9.noarch.rpm tigervnc-server-minimal-1.8.0-28.0.1.el7_9.x86_64.rpm tigervnc-server-module-1.8.0-28.0.1.el7_9.x86_64.rpm SRPMS: http://oss.oracle.com/ol7/SRPMS-updates//tigervnc-1.8.0-2... Related CVEs: CVE-2023-6377 CVE-2023-6478 Description of changes: [1.8.0-28.0.1] - Dropped xorg-CVE-2023-5367.patch, xorg-CVE-2023-6377.patch, and xorg-CVE-2023-6478.patch [1.8.0-28] - Updated fix for CVE-2023-6377 tigervnc: xorg-x11-server: out-of-bounds memory reads/writes in XKB button actions Resolves: RHEL-18415 [1.8.0-27] - Fix CVE-2023-6377 tigervnc: xorg-x11-server: out-of-bounds memory reads/writes in XKB button actions Resolves: RHEL-18415 - CVE-2023-6478 tigervnc: xorg-x11-server: out-of-bounds memory read in RRChangeOutputProperty and RRChangeProviderProperty Resolves: RHEL-18427 _______________________________________________ El-errata mailing list El-errata@oss.oracle.com https://oss.oracle.com/mailman/listinfo/el-errata