Commit Graph

39 Commits

Author SHA1 Message Date
Jan Grulich 847508e58e Fix use after free related to CVE-2024-21886 Resolves: RHEL-20389 2024-02-08 04:59:25 +00:00
Jan Grulich 75082cdb91 Fix CVE-2024-21886 tigervnc: xorg-x11-server: heap buffer overflow in DisableDevice
Resolves: RHEL-20389

Fix CVE-2024-21885 tigervnc: xorg-x11-server: heap buffer overflow in XISendDeviceHierarchyEvent
Resolves: RHEL-20383

Fix CVE-2024-0229 tigervnc: xorg-x11-server: reattaching to different master device may lead to out-of-bounds memory access
Resolves: RHEL-20533

Fix CVE-2023-6816 tigervnc: xorg-x11-server: Heap buffer overflow in DeviceFocusEvent and ProcXIQueryPointer
Resolves: RHEL-21213
2024-01-22 10:28:43 +01:00
Jan Grulich 5a6c55a071 Use dup() to get available file descriptor when using -inetd option
- missing version bump

Resolves: RHEL-19858
2024-01-08 15:09:49 +01:00
Jan Grulich 8f917ea514 Use dup() to get available file descriptor when using -inetd option
Resolves: RHEL-19858
2024-01-08 14:48:28 +01:00
Jan Grulich 49fe969620 Fix CVE-2023-6377 tigervnc: xorg-x11-server: out-of-bounds memory reads/writes in XKB button actions
Resolves: RHEL-18414

Fix CVE-2023-6478 tigervnc: xorg-x11-server: out-of-bounds memory read in RRChangeOutputProperty and RRChangeProviderProperty
Resolves: RHEL-18426
2024-01-02 14:17:24 +01:00
Jan Grulich 71f9cb9382 Fix CVE-2023-5380 tigervnc: xorg-x11-server: Use-after-free bug in DestroyWindow
Resolves: RHEL-15237

Fix CVE-2023-5367 tigervnc: xorg-x11-server: Out-of-bounds write in XIChangeDeviceProperty/RRChangeOutputProperty
Resolves: RHEL-15249
2023-11-01 15:14:21 +01:00
Jan Grulich ebd2a0d7a1 Support username alias in PlainUsers
Resolves: RHEL-8430
2023-10-09 11:38:33 +02:00
Jan Grulich b1e183de26 xorg-x11-server: X.Org Server Overlay Window Use-After-Free Local Privilege Escalation Vulnerability
Resolves: bz#2180310
2023-04-11 14:09:50 +02:00
Jan Grulich c030084269 1.13.1
Resolves: bz#2175732
2023-03-21 10:51:23 +01:00
Jan Grulich 2549fd9a24 SELinux: allow vncsession create .vnc directory
Resolves: bz#2164703
2023-02-21 10:33:26 +01:00
Jan Grulich b038a24d33 Add sanity check when cleaning up keymap changes
Resolves: bz#2169965
2023-02-15 11:36:32 +01:00
Jan Grulich bce000f2ab xorg-x11-server: DeepCopyPointerClasses use-after-free leads to privilege elevation
- missing spec file changes
Resolves: bz#2167061
2023-02-06 13:16:49 +01:00
Tomas Popela 86fc18d8b2 Rebuild for xorg-x11-server CVE-2022-46340 follow up fix
Resolves: CVE-2022-4283 (bz#2154234)
Resolves: CVE-2022-46340 (bz#2154221)
Resolves: CVE-2022-46341 (bz#2154224)
Resolves: CVE-2022-46342 (bz#2154226)
Resolves: CVE-2022-46343 (bz#2154228)
Resolves: CVE-2022-46344 (bz#2154230)
2022-12-20 09:45:14 +01:00
Jan Grulich 06ff78db63 Rebuild for xorg-x11-server CVEs
Resolves: CVE-2022-4283 (bz#2154234)
Resolves: CVE-2022-46340 (bz#2154221)
Resolves: CVE-2022-46341 (bz#2154224)
Resolves: CVE-2022-46342 (bz#2154226)
Resolves: CVE-2022-46343 (bz#2154228)
Resolves: CVE-2022-46344 (bz#2154230)
2022-12-16 11:24:16 +01:00
Jan Grulich 85b050c5d8 x0vncserver: add new keysym in case we don't find matching keycode
+ actually apply the patch

Resolves: bz#2119017
2022-12-01 12:37:19 +01:00
Jan Grulich ead8165b2a x0vncserver: add new keysym in case we don't find matching keycode
Resolves: bz#2119017
2022-12-01 09:59:22 +01:00
Jan Grulich d2b496f3dd x0vncserver: fix ghost cursor in zaphod mode (better version)
Resolves: bz#2119016
2022-10-24 12:07:14 +02:00
Jan Grulich 7a28c85f4d Add BR: libXdamage, libXfixes, libXrandr
Resolves: bz#2091833
2022-05-31 10:31:32 +02:00
Jan Grulich 77bb622463 Do not run systemd_preun on Xvnc service file
Resolves: bz#2048011
2022-04-05 09:13:56 +02:00
Jan Grulich 7c58eec745 Drop unexisting option from the old vncserver script
Resolves: bz#2021893
2022-04-04 12:53:28 +02:00
Jan Grulich 24a8d8f61c Update to 1.12.0 + sync with Fedora
Resolves: bz#2048011
Resolves: bz#2021893
2022-03-23 12:15:39 +01:00
Jan Grulich da2608ff21 Added vncsession-restore script for SELinux policy migration
Fix SELinux context for root user

Resolves: bz#2049506
2022-02-15 10:22:02 +01:00
Jan Grulich c791ae8793 Rebuild for absence in RHEL 9.0
Resolves: bz#1985858
2021-11-26 15:42:28 +01:00
Jan Grulich cd4f8eba50 Sync upstream patches + drop unused patches
Resolves: bz#1985858
2021-08-16 08:26:59 +02:00
Mohan Boddu 6117f862af Rebuilt for IMA sigs, glibc 2.34, aarch64 flags
Related: rhbz#1991688
Signed-off-by: Mohan Boddu <mboddu@redhat.com>
2021-08-10 01:05:17 +00:00
Jan Grulich d14f71fb04 Fix logout from VNC session using vncserver
Resolves: bz#1983704
2021-07-19 19:06:45 +02:00
Jan Grulich 36deca6cfd Bump version for rebuild (binutils)
Resolves: bz#1961488
2021-06-01 08:34:32 +02:00
Jan Grulich 4c4b23f9e3 Bump release
Resolves: bz#1961488
2021-05-26 13:49:52 +02:00
Jan Grulich 648009eaed Rebuild for some unknown build failure in Brew
Resolves: bz#1961488
2021-05-26 13:45:17 +02:00
Jan Grulich 7386fac05b SELinux improvements
Resolves: bz#1961488
2021-05-25 13:17:07 +02:00
Mohan Boddu 1209104cef - Rebuilt for RHEL 9 BETA on Apr 15th 2021. Related: rhbz#1947937
Signed-off-by: Mohan Boddu <mboddu@redhat.com>
2021-04-16 05:53:06 +00:00
Jan Grulich ee4aa1d959 Include RHEL8 patches 2021-03-08 13:57:49 +01:00
Jan Grulich 6a4fb9f794 Enable old vncserver script for RHEL 9 2021-03-05 11:01:22 +01:00
DistroBaker 0864f9b680 Merged update from upstream sources
This is an automated DistroBaker update from upstream sources.
If you do not know what this is about or would like to opt out,
contact the OSCI team.

Source: https://src.fedoraproject.org/rpms/tigervnc.git#afa240a8eb8063f8265eeba538806f35495d36cc
2021-02-03 05:45:42 +00:00
DistroBaker 0b6439e250 Merged update from upstream sources
This is an automated DistroBaker update from upstream sources.
If you do not know what this is about or would like to opt out,
contact the OSCI team.

Source: https://src.fedoraproject.org/rpms/tigervnc.git#f0066896c03ad232002c31feec3d5a1be81943a1
2020-12-16 22:34:22 +00:00
DistroBaker 9131d32ccf Merged update from upstream sources
This is an automated DistroBaker update from upstream sources.
If you do not know what this is about or would like to opt out,
contact the OSCI team.

Source: https://src.fedoraproject.org/rpms/tigervnc.git#3a484bb46b07b4672f557268c5fba25f2d96fd60
2020-12-15 11:12:09 +00:00
DistroBaker 8da64a69d9 Merged update from upstream sources
This is an automated DistroBaker update from upstream sources.
If you do not know what this is about or would like to opt out,
contact the OSCI team.

Source: https://src.fedoraproject.org/rpms/tigervnc.git#72edf00398b14f31858740e62e3afcaacc7a1bf1
2020-11-09 06:06:42 +00:00
Troy Dawson ed3aba81e2 RHEL 9.0.0 Alpha bootstrap
The content of this branch was automatically imported from Fedora ELN
with the following as its source:
https://src.fedoraproject.org/rpms/tigervnc#c14e17f843e2b12cf6e76fdbcaa2d32c504e20e5
2020-10-22 08:32:50 -07:00
Troy Dawson ae10d2f2ae RHEL 9.0.0 Alpha bootstrap
The content of this branch was automatically imported from Fedora ELN
with the following as its source:
https://src.fedoraproject.org/rpms/tigervnc#7daeac56f7fd9c15c053b868a5890c9d8ff20d09
2020-10-15 12:52:37 -07:00