Tools for configuring the console (keyboard, virtual terminals, etc.)
Go to file
RHEL Packaging Agent cc45dbedc6 Fix CVE-2026-72693: openvt -u process matching made more conservative
Backport upstream commit 78d5ae119742e87baa7dbe0f5c4107e7533fd698
to make openvt -u process matching more conservative. The patch
adds a proc_pid_stat() helper that reads /proc/<pid>/stat to
obtain the process owner UID and controlling terminal device
number, replacing the old fd/0 ownership check. The
authenticate_user() function now requires both a matching process
owner and controlling terminal, and refuses to pre-authenticate
root. The openvt.1 man page is updated to document the tighter
-u behavior.

CVE: CVE-2026-72693
Upstream patches:
 - 78d5ae1197.patch
Resolves: RHEL-235988

This commit was backported by Ymir, a Red Hat Enterprise Linux software maintenance AI agent.

Assisted-by: Ymir
2026-08-11 09:36:10 +00:00
.fmf Migrate to TMT-style gating in C9S 2024-12-06 19:04:22 +01:00
plans Migrate to TMT-style gating in C9S 2024-12-06 19:04:22 +01:00
.gitignore Merged update from upstream sources 2020-12-16 10:40:58 +00:00
cz-map.patch RHEL 9.0.0 Alpha bootstrap 2020-10-15 14:28:53 +02:00
gating.yaml Migrate to TMT-style gating in C9S 2024-12-06 19:04:22 +01:00
kbd-1.15-keycodes-man.patch RHEL 9.0.0 Alpha bootstrap 2020-10-15 14:28:53 +02:00
kbd-1.15-sparc.patch RHEL 9.0.0 Alpha bootstrap 2020-10-15 14:28:53 +02:00
kbd-1.15-unicode_start.patch RHEL 9.0.0 Alpha bootstrap 2020-10-15 14:28:53 +02:00
kbd-1.15.3-dumpkeys-man.patch RHEL 9.0.0 Alpha bootstrap 2020-10-15 14:28:53 +02:00
kbd-1.15.5-loadkeys-search-path.patch RHEL 9.0.0 Alpha bootstrap 2020-10-15 14:28:53 +02:00
kbd-1.15.5-sg-decimal-separator.patch RHEL 9.0.0 Alpha bootstrap 2020-10-15 14:28:53 +02:00
kbd-1.15.5-vlock-more-pam.patch RHEL 9.0.0 Alpha bootstrap 2020-10-15 14:28:53 +02:00
kbd-2.0.2-unicode-start-font.patch RHEL 9.0.0 Alpha bootstrap 2020-10-15 14:28:53 +02:00
kbd-2.0.4-covscan-fixes.patch RHEL 9.0.0 Alpha bootstrap 2020-10-15 14:28:53 +02:00
kbd-2.4.0-11.el9.src.rpm Add vlock option to issue prompt before invokation of pam stack 2025-01-09 08:46:00 +01:00
kbd-2.4.0-covscan-fixes.patch Fix issues detected by static analysis 2021-05-05 10:32:21 +02:00
kbd-2.4.0-CVE-2026-72693.patch Fix CVE-2026-72693: openvt -u process matching made more conservative 2026-08-11 09:36:10 +00:00
kbd-2.4.0-initialize-variable.patch Initialize variable to avoid possible uninitialized use 2024-05-21 10:45:04 +02:00
kbd-2.4.0-setfont-exit-code.patch Fix setfont exit code 2021-05-17 13:43:18 +02:00
kbd-2.4.0-vlock-add-prompt-option.patch Add vlock option to issue prompt before invokation of pam stack 2025-01-09 08:46:00 +01:00
kbd.spec Fix CVE-2026-72693: openvt -u process matching made more conservative 2026-08-11 09:36:10 +00:00
sources Merged update from upstream sources 2020-12-16 10:40:58 +00:00
vlock.pamd RHEL 9.0.0 Alpha bootstrap 2020-10-15 14:28:53 +02:00
xml2lst.pl RHEL 9.0.0 Alpha bootstrap 2020-10-15 14:28:53 +02:00