| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search | 
| Name: tigervnc-server-module | Distribution: CentOS | 
| Version: 1.15.0 | Vendor: CentOS | 
| Release: 1.el9 | Build date: Mon Mar 10 14:07:42 2025 | 
| Group: Unspecified | Build host: ppc64le-02.stream.rdu2.redhat.com | 
| Size: 928169 | Source RPM: tigervnc-1.15.0-1.el9.src.rpm | 
| Packager: builder@centos.org | |
| Url: http://www.tigervnc.com | |
| Summary: TigerVNC module to Xorg | |
This package contains libvnc.so module to X server, allowing others to access the desktop on your machine.
GPL-2.0-or-later
* Fri Mar 07 2025 Jan Grulich <jgrulich@redhat.com> - 1.15.0-1
  - 1.15.0
    Resolves: RHEL-78617
  - Add SELinux policy rules allowing to access /proc/sys/fs/nr_open
    Resolves: RHEL-77973
  - Add SELinux policy rules allowing to create directories under /root
    Resolves: RHEL-77975
  - Fix CVE-2025-26594 xorg-x11-server Use-after-free of the root cursor
    Resolves: RHEL-80208
  - Fix CVE-2025-26595 xorg-x11-server Buffer overflow in XkbVModMaskText()
    Resolves: RHEL-80189
  - Fix CVE-2025-26596 xorg-x11-server Heap overflow in XkbWriteKeySyms()
    Resolves: RHEL-80194
  - Fix CVE-2025-26597 xorg-x11-server Buffer overflow in XkbChangeTypesOfKey()
    Resolves: RHEL-80196
  - Fix CVE-2025-26598 xorg-x11-server Out-of-bounds write in CreatePointerBarrierClient()
    Resolves: RHEL-80197
  - Fix CVE-2025-26599 xorg-x11-server Use of uninitialized pointer in compRedirectWindow()
    Resolves: RHEL-80206
  - Fix CVE-2025-26600 xorg-x11-server Use-after-free in PlayReleasedEvents()
    Resolves: RHEL-80205
  - Fix CVE-2025-26601 xorg-x11-server Use-after-free in SyncInitTrigger()
    Resolves: RHEL-80209
* Tue Jan 21 2025 Jan Grulich <jgrulich@redhat.com> - 1.14.1-4
  - Fix crash in clipboard support in x0vncserver
    Resolves: RHEL-74216
* Thu Jan 16 2025 Jan Grulich <jgrulich@redhat.com> - 1.14.1-3
  - Add clipboard support to x0vncserver
    Resolves: RHEL-74216
* Thu Oct 31 2024 Jan Grulich <jgrulich@redhat.com> - 1.14.1-2
  - Fix CVE-2024-9632: xorg-x11-server: heap-based buffer overflow privilege escalation vulnerability
    Resolves: RHEL-62001
* Wed Oct 23 2024 Jan Grulich <jgrulich@redhat.com> - 1.14.1-1
  - 1.14.1
    Resolves: RHEL-45316
* Mon Oct 07 2024 Jan Grulich <jgrulich@redhat.com> - 1.14.0-6
  - Make "ApproveLoggedUserOnly" to ignore "closing" sessions
    Resolves: RHEL-34880
* Fri Oct 04 2024 Jan Grulich <jgrulich@redhat.com> - 1.14.0-5
  - Fix "ApproveLoggedUserOnly" option not working in some setups
    Resolves: RHEL-34880
* Fri Sep 27 2024 Jan Grulich <jgrulich@redhat.com> - 1.14.0-4
  - Add option "ApproveLoggedUserOnly" allowing to connect only the user
    owning the running session
    Resolves: RHEL-34880
* Wed Sep 04 2024 Jan Grulich <jgrulich@redhat.com> - 1.14.0-3
  - Move old log to log.old if present (fix patch)
    Resolves: RHEL-54294
* Tue Aug 20 2024 Jan Grulich <jgrulich@redhat.com> - 1.14.0-2
  - 1.14.0
    Resolves: RHEL-45316
  - Move old log to log.old if present
    Resolves: RHEL-54294
  - Fix shared memory leak
    Resolves: RHEL-55768
* Mon Aug 05 2024 Jan Grulich <jgrulich@redhat.com> - 1.13.1-11
  - vncsession: use /bin/sh if the user shell is not set
    Resolves: RHEL-50679
* Tue May 28 2024 Jan Grulich <jgrulich@redhat.com> - 1.13.1-10
  - vncconfig: add option to force view-only remote client connections
    Resolves: RHEL-12144
* Tue Apr 16 2024 Jan Grulich <jgrulich@redhat.com> - 1.13.1-9
  - Fix CVE-2024-31080 tigervnc: xorg-x11-server: Heap buffer overread/data leakage in ProcXIGetSelectedEvents
    Resolves: RHEL-30756
  - Fix CVE-2024-31083 tigervnc: xorg-x11-server: User-after-free in ProcRenderAddGlyphs
    Resolves: RHEL-30768
  - Fix CVE-2024-31081 tigervnc: xorg-x11-server: Heap buffer overread/data leakage in ProcXIPassiveGrabDevice
    Resolves: RHEL-30762
* Wed Feb 07 2024 Jan Grulich <jgrulich@redhat.com> - 1.13.1-8
  - Fix copy/paste error in the DeviceStateNotify
    Resolves: RHEL-20533
* Mon Jan 22 2024 Jan Grulich <jgrulich@redhat.com> - 1.13.1-7
  - Fix CVE-2024-21886 tigervnc: xorg-x11-server: heap buffer overflow in DisableDevice
    Resolves: RHEL-20389
  - Fix CVE-2024-21885 tigervnc: xorg-x11-server: heap buffer overflow in XISendDeviceHierarchyEvent
    Resolves: RHEL-20383
  - Fix CVE-2024-0229 tigervnc: xorg-x11-server: reattaching to different master device may lead to out-of-bounds memory access
    Resolves: RHEL-20533
  - Fix CVE-2023-6816 tigervnc: xorg-x11-server: Heap buffer overflow in DeviceFocusEvent and ProcXIQueryPointer
    Resolves: RHEL-21213
* Mon Jan 08 2024 Jan Grulich <jgrulich@redhat.com> - 1.13.1-6
  - Use dup() to get available file descriptor when using -inetd option
    Resolves: RHEL-19858
* Mon Dec 18 2023 Jan Grulich <jgrulich@redhat.com> - 1.13.1-5
  - Fix CVE-2023-6377 tigervnc: xorg-x11-server: out-of-bounds memory reads/writes in XKB button actions
    Resolves: RHEL-18414
  - Fix CVE-2023-6478 tigervnc: xorg-x11-server: out-of-bounds memory read in RRChangeOutputProperty and RRChangeProviderProperty
    Resolves: RHEL-18426
* Wed Nov 01 2023 Jan Grulich <jgrulich@redhat.com> - 1.13.1-4
  - Fix CVE-2023-5380 tigervnc: xorg-x11-server: Use-after-free bug in DestroyWindow
    Resolves: RHEL-15237
  
  - Fix CVE-2023-5367 tigervnc: xorg-x11-server: Out-of-bounds write in XIChangeDeviceProperty/RRChangeOutputProperty
    Resolves: RHEL-15249
* Mon Oct 09 2023 Jan Grulich <jgrulich@redhat.com> - 1.13.1-3
  - Support username alias in PlainUsers
    Resolves: RHEL-8430
* Tue Apr 11 2023 Jan Grulich <jgrulich@redhat.com> - 1.13.1-2
  - xorg-x11-server: X.Org Server Overlay Window Use-After-Free Local Privilege
    Escalation Vulnerability
    Resolves: bz#2180310
* Tue Mar 21 2023 Jan Grulich <jgrulich@redhat.com> - 1.13.1-1
  - 1.13.1
    Resolves: bz#2175732
/etc/X11/xorg.conf.d/10-libvnc.conf /usr/lib/.build-id /usr/lib/.build-id/d7 /usr/lib/.build-id/d7/63cb16e65baf0e81cce0905f835ee03106c94b /usr/lib64/xorg/modules/extensions/libvnc.so
Generated by rpm2html 1.8.1
Fabrice Bellet, Tue Oct 21 04:59:16 2025