Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Oracle Linux 7 ELSA-2025-2861: tigervnc critical security updates

oracle
Calendar Grey April 1, 2025
Oracle Linux Logo Esm H88
New tgervnc security patches and updates provide essential fixes for vulnerabilities in Oracle Linux 7. Take immediate action!
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

Summary

[1.8.0-33.0.5] - Fix CVE-2025-26594 xorg-x11-server Use-after-free of the root cursor [Orabug: 37712725] - Fix CVE-2025-26595 xorg-x11-server Buffer overflow in XkbVModMaskText() - Fix CVE-2025-26596 xorg-x11-server Heap overflow in XkbWriteKeySyms() - Fix CVE-2025-26597 xorg-x11-server Buffer overflow in XkbChangeTypesOfKey() - Fix CVE-2025-26598 xorg-x11-server Out-of-bounds write in CreatePointerBarrierClient() - Fix CVE-2025-26599 xorg-x11-server Use of uninitialized pointer in compRedirectWindow() - Fix CVE-2025-26600 xorg-x11-server Use-after-free in PlayReleasedEvents() - Fix CVE-2025-26601 xorg-x11-server Use-after-free in SyncInitTrigger() [1.8.0-33.0.3] - xorg-x11-server: xkb: Fix buffer overflow in _XkbSetCompatMap() [CVE-2024-9632][Orabug: 37295822] [1.8.0-33.0.1] - Dropped xorg-CVE-2023-5367.patch, xorg-CVE-2023-6816.patch, xorg-CVE-2023-6377.patch, xorg-CVE-2023-6478.patch, xorg-CVE-2024-0229-1.patch, xorg-CVE-2024-0229-2.patch, xorg-CVE-2024-0229-3.patch, xorg-CV...

Read the Full Advisory

SRPMs

http://oss.oracle.com/ol7/SRPMS-updates//tigervnc-1.8.0-33.0.5.el7_9.src.rpm

x86_64

tigervnc-1.8.0-33.0.5.el7_9.x86_64.rpm tigervnc-icons-1.8.0-33.0.5.el7_9.noarch.rpm tigervnc-license-1.8.0-33.0.5.el7_9.noarch.rpm tigervnc-server-1.8.0-33.0.5.el7_9.x86_64.rpm tigervnc-server-applet-1.8.0-33.0.5.el7_9.noarch.rpm tigervnc-server-minimal-1.8.0-33.0.5.el7_9.x86_64.rpm tigervnc-server-module-1.8.0-33.0.5.el7_9.x86_64.rpm

aarch64

Severity
critical
Lowest
Low
Medium
High
Critical

Related CVEs: CVE-2025-26594 CVE-2025-26595 CVE-2025-26596 CVE-2025-26597 CVE-2025-26598 CVE-2025-26599 CVE-2025-26600 CVE-2025-26601

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here