RHSA-2024:0010: Important: tigervnc security update
Important: tigervnc security update
Other sources
Virtual Network Computing (VNC) is a remote display system which allows users to view a computing desktop environment not only on the machine where it is running, but from anywhere on the Internet and from a wide variety of machine architectures. TigerVNC is a suite of VNC servers and clients.Security Fix(es): xorg-x11-server: Out-of-bounds write in XIChangeDeviceProperty/RRChangeOutputProperty (CVE-2023-5367) xorg-x11-server: out-of-bounds memory reads/writes in XKB button actions (CVE-2023-6377) xorg-x11-server: out-of-bounds memory read in RRChangeOutputProperty and RRChangeProviderProperty (CVE-2023-6478) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:0010?
RHSA-2024:0010 has been classified as an important security update.
How do I fix RHSA-2024:0010?
To resolve RHSA-2024:0010, update the tigervnc package to version 1.13.1-3.el9_3.3 or later.
What are the affected packages in RHSA-2024:0010?
The affected packages in RHSA-2024:0010 include tigervnc, tigervnc-server, and various associated debuginfo and minimal packages.
Is RHSA-2024:0010 applicable to all Red Hat Enterprise Linux versions?
RHSA-2024:0010 is applicable to specific versions of Red Hat Enterprise Linux, primarily the el9_3 series.
What platforms are affected by RHSA-2024:0010?
RHSA-2024:0010 affects Red Hat Enterprise Linux for x86_64, Power, IBM z Systems, and ARM 64 platforms.