-
Tue Jan 02 2024 Kevin Lyons <kevin.x.lyons@oracle.com> - 1.8.0-28.0.1
- Dropped xorg-CVE-2023-5367.patch, xorg-CVE-2023-6377.patch, and xorg-CVE-2023-6478.patch
-
Wed Dec 13 2023 Jan Grulich <jgrulich@redhat.com> - 1.8.0-28
- Updated fix for CVE-2023-6377 tigervnc: xorg-x11-server: out-of-bounds memory reads/writes in XKB button actions
Resolves: RHEL-18415
-
Fri Dec 08 2023 Jan Grulich <jgrulich@redhat.com> - 1.8.0-27
- Fix CVE-2023-6377 tigervnc: xorg-x11-server: out-of-bounds memory reads/writes in XKB button actions
Resolves: RHEL-18415
- CVE-2023-6478 tigervnc: xorg-x11-server: out-of-bounds memory read in RRChangeOutputProperty and RRChangeProviderProperty
Resolves: RHEL-18427
-
Wed Nov 01 2023 Jan Grulich <jgrulich@redhat.com> - 1.8.0-26
- Fix CVE-2023-5380 tigervnc: xorg-x11-server: Use-after-free bug in DestroyWindow
Resolves: RHEL-15235
- Fix CVE-2023-5367 tigervnc: xorg-x11-server: Out-of-bounds write in XIChangeDeviceProperty/RRChangeOutputProperty
Resolves: RHEL-15223
-
Mon Mar 27 2023 Jan Grulich <jgrulich@redhat.com> - 1.8.0-25
- CVE fix for: CVE-2023-1393
Resolves: bz#2180291
-
Fri Feb 03 2023 Jan Grulich <jgrulich@redhat.com> - 1.8.0-24
- CVE fix for: CVE-2023-0494
Resolves: bz#2166532
-
Fri Dec 16 2022 Jan Grulich <jgrulich@redhat.com> - 1.8.0-23
- Rebuild for xorg-x11-server CVEs
Resolves: CVE-2022-4283 (bz#2154267)
Resolves: CVE-2022-46340 (bz#2154261)
Resolves: CVE-2022-46341 (bz#2154264)
Resolves: CVE-2022-46342 (bz#2154262)
Resolves: CVE-2022-46343 (bz#2154265)
Resolves: CVE-2022-46344 (bz#2154266)
-
Thu Jul 09 2020 Jan Grulich <jgrulich@redhat.com> - 1.8.0-22
- Region handling refresh
Resolves: bz#1753158
-
Wed Apr 22 2020 Jan Grulich <jgrulich@redhat.com> - 1.8.0-21
- Add upstream patch needed because of previous security fixes
Resolves: bz#1826822
-
Fri Feb 21 2020 Jan Grulich <jgrulich@redhat.com> - 1.8.0-20
- Fix stack buffer overflow in CMsgReader::readSetCursor
Resolves: bz#1791773
- Fix heap buffer overflow in DecodeManager::decodeRect
Resolves: bz#1791768
- Fix heap buffer overflow in TightDecoder::FilterGradient
Resolves: bz#1791763
- Fix heap-based buffer overflow triggered from CopyRectDecoder
Resolves: bz#1791747
- Fix stack use-after-return due to incorrect usage of stack memory in ZRLEDecoder
Resolves: bz#1791759
- Add option to fallback to empty port when the specified one is taken
Resolves: bz#1791996