[CLSA-2026:1780935632] tigervnc: Fix of CVE-2026-34000
Type:
security
Severity:
Critical
Release date:
2026-06-08 16:22:12 UTC
Description:
- CVE-2026-34000: fix bounds check in _CheckSetGeom() in the bundled xorg-x11-server source to prevent out-of-bounds read in XKB geometry key alias processing (xkb/xkb.c)
CVEs fixed:
Updated packages:
  • tigervnc-1.8.0-33.0.7.el7_9.tuxcare.els4.x86_64.rpm
    sha:bf0f29a75d813f931d4bd8ae8b8f2d5d79826130952245246fa014fd2736b7c0
  • tigervnc-icons-1.8.0-33.0.7.el7_9.tuxcare.els4.noarch.rpm
    sha:66381d5c9c9fa80543dd29891ee080eb7d1d21d77276252e409de4c2f5af9b3f
  • tigervnc-license-1.8.0-33.0.7.el7_9.tuxcare.els4.noarch.rpm
    sha:91fa5c3f249cdd70a7b299add86c51ddd90a1b54ba30c681d878a28f5b98197d
  • tigervnc-server-1.8.0-33.0.7.el7_9.tuxcare.els4.x86_64.rpm
    sha:eabf1c8de06b7793b5af0fecd1afcf98e9fd13acf800c0ccc2a6dcb631e6c355
  • tigervnc-server-applet-1.8.0-33.0.7.el7_9.tuxcare.els4.noarch.rpm
    sha:0506ddbc0ae8886286ffcc1d78c25dcdd77f7253e5fbee4b3f7a793d7403d7f6
  • tigervnc-server-minimal-1.8.0-33.0.7.el7_9.tuxcare.els4.x86_64.rpm
    sha:d38a0e4e3488a71d1160842f4fb31d17b5b5fa4792ad03f143ac660a765ba3f3
  • tigervnc-server-module-1.8.0-33.0.7.el7_9.tuxcare.els4.x86_64.rpm
    sha:7865becd25506605630ac1f1c2ae39abfec992f703a6a0a644220d3fbbaa31e0
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.