[CLSA-2026:1781081364] tigervnc: Fix of 3 CVEs
Type:
security
Severity:
Important
Release date:
2026-06-11 20:05:43 UTC
Description:
- CVE-2026-33999: fix buffer re-use in _XkbSetCompatMap() in the bundled xorg-x11-server source to prevent a buffer read overrun - CVE-2026-34001: fix use-after-free in miSyncTriggerFence() in the bundled xorg-x11-server source - CVE-2026-34003: add additional bound checking in CheckKeyTypes() in the bundled xorg-x11-server source to prevent an out-of-bounds read
Updated packages:
  • tigervnc-1.8.0-33.0.7.el7_9.tuxcare.els5.x86_64.rpm
    sha:c9752dd1c698718f1ffcba3edad1798e236a8a1183dace173c723d511104db0f
  • tigervnc-icons-1.8.0-33.0.7.el7_9.tuxcare.els5.noarch.rpm
    sha:b28046531aa550f374b9a248372e3e6b924db4c53ca5a84a769c5ffc1658043f
  • tigervnc-license-1.8.0-33.0.7.el7_9.tuxcare.els5.noarch.rpm
    sha:26c84e0c84f7be23e4ceeedbb57ef34967c420ceade87f0dc7b491b0b58ebb91
  • tigervnc-server-1.8.0-33.0.7.el7_9.tuxcare.els5.x86_64.rpm
    sha:133b1a1b8b057a852371ff965e8e930b538b07fa130482de7d1a679a43d0b473
  • tigervnc-server-applet-1.8.0-33.0.7.el7_9.tuxcare.els5.noarch.rpm
    sha:10e780a5c6858f1d435e71ce7cb58f4bf24989eacfc4a28a8ca7d32f6797f975
  • tigervnc-server-minimal-1.8.0-33.0.7.el7_9.tuxcare.els5.x86_64.rpm
    sha:81c3c8599709e4489928b5ffad6fdba19ec991b89f982c833fe34db8faec452d
  • tigervnc-server-module-1.8.0-33.0.7.el7_9.tuxcare.els5.x86_64.rpm
    sha:a69eb35a278180e4a488f0cc146247b9584887001a30e59e2029b2e2d7db5388
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.