Commit Graph

60 Commits

Author SHA1 Message Date
Jan Grulich
70517c2cc7 Fix crash in clipboard support in x0vncserver
Resolves: RHEL-74216
2025-01-21 15:55:15 +01:00
Jan Grulich
2c870727a9 Add cliboard support to x0vncserver
Resolves: RHEL-74216
2025-01-16 14:01:54 +01:00
Jan Grulich
300dd6713e Fix CVE-2024-9632: xorg-x11-server: heap-based buffer overflow privilege escalation vulnerability
Resolves: RHEL-62001
2024-10-31 12:53:15 +01:00
Jan Grulich
56b503e143 1.14.1
Resolves: RHEL-45316
2024-10-23 09:41:36 +02:00
Jan Grulich
5e94ff7a40 Make "ApproveLoggedUserOnly" to ignore "closing" sessions
Resolves: RHEL-34880
2024-10-07 12:57:00 +02:00
Jan Grulich
5ae84e72f3 Fix "ApproveLoggedUserOnly" option not working in some setups
Resolves: RHEL-34880
2024-10-04 09:07:31 +02:00
Jan Grulich
8ed86c60ec Add option "ApproveLoggedUserOnly" allowing to connect only the user
owning the running session

Resolves: RHEL-34880
2024-09-27 15:56:00 +02:00
Jan Grulich
b3a7f8a95f Move old log to log.old if present (fix patch)
Resolves: RHEL-54294
2024-09-04 08:28:59 +02:00
Jan Grulich
ed0ea16f50 1.14.0
Resolves: RHEL-45316

Move old log to log.old if present
Resolves: RHEL-54294

Fix shared memory leak
Resolves: RHEL-55768
2024-09-02 10:42:20 +02:00
Jan Grulich
c27de8c289 vncsession: use /bin/sh if the user shell is not set
Resolves: RHEL-50679
2024-08-05 13:20:45 +02:00
Jan Grulich
45289fbdbc Revert "1.14.0"
This reverts commit 55f47bf052.

Rescheduled for RHEL 9.6.
2024-07-23 15:22:34 +02:00
Jan Grulich
55f47bf052 1.14.0
Resolves: RHEL-45316
2024-07-23 13:56:04 +02:00
Jan Grulich
f76f6574de vncconfig: add option to force view-only remote client connections
Resolves: RHEL-12144
2024-05-28 13:08:57 +02:00
Jan Grulich
d8901da547 Fix CVE-2024-31080 tigervnc: xorg-x11-server: Heap buffer overread/data leakage in ProcXIGetSelectedEvents
Resolves: RHEL-30756

Fix CVE-2024-31083 tigervnc: xorg-x11-server: User-after-free in ProcRenderAddGlyphs
Resolves: RHEL-30768

Fix CVE-2024-31081 tigervnc: xorg-x11-server: Heap buffer overread/data leakage in ProcXIPassiveGrabDevice
Resolves: RHEL-30762
2024-04-16 10:56:46 +02:00
Jan Grulich
7654aeef3b Fix use after free related to CVE-2024-21886
Resolves: RHEL-20389

Fix copy/paste error in the DeviceStateNotify
Resolves: RHEL-20533
2024-02-07 13:32:14 +01:00
Jan Grulich
75082cdb91 Fix CVE-2024-21886 tigervnc: xorg-x11-server: heap buffer overflow in DisableDevice
Resolves: RHEL-20389

Fix CVE-2024-21885 tigervnc: xorg-x11-server: heap buffer overflow in XISendDeviceHierarchyEvent
Resolves: RHEL-20383

Fix CVE-2024-0229 tigervnc: xorg-x11-server: reattaching to different master device may lead to out-of-bounds memory access
Resolves: RHEL-20533

Fix CVE-2023-6816 tigervnc: xorg-x11-server: Heap buffer overflow in DeviceFocusEvent and ProcXIQueryPointer
Resolves: RHEL-21213
2024-01-22 10:28:43 +01:00
Jan Grulich
5a6c55a071 Use dup() to get available file descriptor when using -inetd option
- missing version bump

Resolves: RHEL-19858
2024-01-08 15:09:49 +01:00
Jan Grulich
8f917ea514 Use dup() to get available file descriptor when using -inetd option
Resolves: RHEL-19858
2024-01-08 14:48:28 +01:00
Jan Grulich
49fe969620 Fix CVE-2023-6377 tigervnc: xorg-x11-server: out-of-bounds memory reads/writes in XKB button actions
Resolves: RHEL-18414

Fix CVE-2023-6478 tigervnc: xorg-x11-server: out-of-bounds memory read in RRChangeOutputProperty and RRChangeProviderProperty
Resolves: RHEL-18426
2024-01-02 14:17:24 +01:00
Jan Grulich
71f9cb9382 Fix CVE-2023-5380 tigervnc: xorg-x11-server: Use-after-free bug in DestroyWindow
Resolves: RHEL-15237

Fix CVE-2023-5367 tigervnc: xorg-x11-server: Out-of-bounds write in XIChangeDeviceProperty/RRChangeOutputProperty
Resolves: RHEL-15249
2023-11-01 15:14:21 +01:00
Jan Grulich
ebd2a0d7a1 Support username alias in PlainUsers
Resolves: RHEL-8430
2023-10-09 11:38:33 +02:00
Jan Grulich
b1e183de26 xorg-x11-server: X.Org Server Overlay Window Use-After-Free Local Privilege Escalation Vulnerability
Resolves: bz#2180310
2023-04-11 14:09:50 +02:00
Jan Grulich
c030084269 1.13.1
Resolves: bz#2175732
2023-03-21 10:51:23 +01:00
Jan Grulich
2549fd9a24 SELinux: allow vncsession create .vnc directory
Resolves: bz#2164703
2023-02-21 10:33:26 +01:00
Jan Grulich
b038a24d33 Add sanity check when cleaning up keymap changes
Resolves: bz#2169965
2023-02-15 11:36:32 +01:00
Jan Grulich
bce000f2ab xorg-x11-server: DeepCopyPointerClasses use-after-free leads to privilege elevation
- missing spec file changes
Resolves: bz#2167061
2023-02-06 13:16:49 +01:00
Jan Grulich
197138efeb xorg-x11-server: DeepCopyPointerClasses use-after-free leads to privilege elevation
Resolves: bz#2167061
2023-02-06 12:53:31 +01:00
Tomas Popela
86fc18d8b2 Rebuild for xorg-x11-server CVE-2022-46340 follow up fix
Resolves: CVE-2022-4283 (bz#2154234)
Resolves: CVE-2022-46340 (bz#2154221)
Resolves: CVE-2022-46341 (bz#2154224)
Resolves: CVE-2022-46342 (bz#2154226)
Resolves: CVE-2022-46343 (bz#2154228)
Resolves: CVE-2022-46344 (bz#2154230)
2022-12-20 09:45:14 +01:00
Jan Grulich
06ff78db63 Rebuild for xorg-x11-server CVEs
Resolves: CVE-2022-4283 (bz#2154234)
Resolves: CVE-2022-46340 (bz#2154221)
Resolves: CVE-2022-46341 (bz#2154224)
Resolves: CVE-2022-46342 (bz#2154226)
Resolves: CVE-2022-46343 (bz#2154228)
Resolves: CVE-2022-46344 (bz#2154230)
2022-12-16 11:24:16 +01:00
Jan Grulich
85b050c5d8 x0vncserver: add new keysym in case we don't find matching keycode
+ actually apply the patch

Resolves: bz#2119017
2022-12-01 12:37:19 +01:00
Jan Grulich
ead8165b2a x0vncserver: add new keysym in case we don't find matching keycode
Resolves: bz#2119017
2022-12-01 09:59:22 +01:00
Jan Grulich
d2b496f3dd x0vncserver: fix ghost cursor in zaphod mode (better version)
Resolves: bz#2119016
2022-10-24 12:07:14 +02:00
Jan Grulich
7a28c85f4d Add BR: libXdamage, libXfixes, libXrandr
Resolves: bz#2091833
2022-05-31 10:31:32 +02:00
Jan Grulich
77bb622463 Do not run systemd_preun on Xvnc service file
Resolves: bz#2048011
2022-04-05 09:13:56 +02:00
Jan Grulich
7c58eec745 Drop unexisting option from the old vncserver script
Resolves: bz#2021893
2022-04-04 12:53:28 +02:00
Jan Grulich
24a8d8f61c Update to 1.12.0 + sync with Fedora
Resolves: bz#2048011
Resolves: bz#2021893
2022-03-23 12:15:39 +01:00
Jan Grulich
da2608ff21 Added vncsession-restore script for SELinux policy migration
Fix SELinux context for root user

Resolves: bz#2049506
2022-02-15 10:22:02 +01:00
Jan Grulich
a8e93b65dd Fix yaml syntax in rpminspect.yaml 2021-12-16 14:45:01 +01:00
Jan Grulich
2c9c975b77 Add rpminspect.yaml to supress warnings about badfuncs and runpath checks 2021-12-16 12:21:54 +01:00
Jan Grulich
c791ae8793 Rebuild for absence in RHEL 9.0
Resolves: bz#1985858
2021-11-26 15:42:28 +01:00
Jan Grulich
cd4f8eba50 Sync upstream patches + drop unused patches
Resolves: bz#1985858
2021-08-16 08:26:59 +02:00
Mohan Boddu
6117f862af Rebuilt for IMA sigs, glibc 2.34, aarch64 flags
Related: rhbz#1991688
Signed-off-by: Mohan Boddu <mboddu@redhat.com>
2021-08-10 01:05:17 +00:00
Jan Grulich
d14f71fb04 Fix logout from VNC session using vncserver
Resolves: bz#1983704
2021-07-19 19:06:45 +02:00
Jan Grulich
36deca6cfd Bump version for rebuild (binutils)
Resolves: bz#1961488
2021-06-01 08:34:32 +02:00
Jan Grulich
4c4b23f9e3 Bump release
Resolves: bz#1961488
2021-05-26 13:49:52 +02:00
Jan Grulich
648009eaed Rebuild for some unknown build failure in Brew
Resolves: bz#1961488
2021-05-26 13:45:17 +02:00
Jan Grulich
7386fac05b SELinux improvements
Resolves: bz#1961488
2021-05-25 13:17:07 +02:00
Mohan Boddu
1209104cef - Rebuilt for RHEL 9 BETA on Apr 15th 2021. Related: rhbz#1947937
Signed-off-by: Mohan Boddu <mboddu@redhat.com>
2021-04-16 05:53:06 +00:00
Tomas Pelka
4fab11fdb2 update produc version in gating.yaml 2021-03-09 11:07:35 +01:00
Jan Grulich
ee4aa1d959 Include RHEL8 patches 2021-03-08 13:57:49 +01:00