Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Oracle Linux 9 ELSA-2024-10090: tigervnc Important Updates for Security

oracle
Calendar Grey November 21, 2024
Oracle Linux Logo Esm H88
Crucial Oracle Linux patches for tigervnc tackling severe privilege escalation vulnerabilities and bolstering security measures.
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

Summary

[1.14.1-1] - 1.14.1 Resolves: RHEL-66600 - Fix CVE-2024-9632: xorg-x11-server: heap-based buffer overflow privilege escalation vulnerability Resolves: RHEL-62000 [1.13.1-11] - vncsession: use /bin/sh if the user shell is not set Resolves: RHEL-50679 [1.13.1-10] - vncconfig: add option to force view-only remote client connections Resolves: RHEL-12144 [1.13.1-9] - Fix CVE-2024-31080 tigervnc: xorg-x11-server: Heap buffer overread/data leakage in ProcXIGetSelectedEvents Resolves: RHEL-30756 - Fix CVE-2024-31083 tigervnc: xorg-x11-server: User-after-free in ProcRenderAddGlyphs Resolves: RHEL-30768 - Fix CVE-2024-31081 tigervnc: xorg-x11-server: Heap buffer overread/data leakage in ProcXIPassiveGrabDevice Resolves: RHEL-30762 [1.13.1-8] - Fix copy/paste error in the DeviceStateNotify Resolves: RHEL-20533 [1.13.1-7] - Fix CVE-2024-21886 tigervnc: xorg-x11-server: heap buffer overflow in DisableDevice Resolves: RHEL-20389 - Fix CVE-2024-21885 tigervnc: xorg-x11-serv...

Read the Full Advisory

SRPMs

http://oss.oracle.com/ol9/SRPMS-updates//tigervnc-1.14.1-1.el9_5.src.rpm

x86_64

tigervnc-1.14.1-1.el9_5.x86_64.rpm tigervnc-icons-1.14.1-1.el9_5.noarch.rpm tigervnc-license-1.14.1-1.el9_5.noarch.rpm tigervnc-selinux-1.14.1-1.el9_5.noarch.rpm tigervnc-server-1.14.1-1.el9_5.x86_64.rpm tigervnc-server-minimal-1.14.1-1.el9_5.x86_64.rpm tigervnc-server-module-1.14.1-1.el9_5.x86_64.rpm

aarch64

tigervnc-1.14.1-1.el9_5.aarch64.rpm tigervnc-icons-1.14.1-1.el9_5.noarch.rpm tigervnc-license-1.14.1-1.el9_5.noarch.rpm tigervnc-selinux-1.14.1-1.el9_5.noarch.rpm tigervnc-server-1.14.1-1.el9_5.aarch64.rpm tigervnc-server-minimal-1.14.1-1.el9_5.aarch64.rpm tigervnc-server-module-1.14.1-1.el9_5.aarch64.rpm

Severity
important
Lowest
Low
Medium
High
Critical

Related CVEs: CVE-2024-9632

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here