[El-errata] ELSA-2017-2258 Moderate: Oracle Linux 7 gtk-vnc security, bug fix, and enhancement update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Tue Aug 8 13:53:52 PDT 2017


Oracle Linux Security Advisory ELSA-2017-2258

http://linux.oracle.com/errata/ELSA-2017-2258.html

The following updated rpms for Oracle Linux 7 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
gtk-vnc-0.7.0-2.el7.i686.rpm
gtk-vnc-0.7.0-2.el7.x86_64.rpm
gtk-vnc-devel-0.7.0-2.el7.i686.rpm
gtk-vnc-devel-0.7.0-2.el7.x86_64.rpm
gtk-vnc-python-0.7.0-2.el7.x86_64.rpm
gtk-vnc2-0.7.0-2.el7.i686.rpm
gtk-vnc2-0.7.0-2.el7.x86_64.rpm
gtk-vnc2-devel-0.7.0-2.el7.i686.rpm
gtk-vnc2-devel-0.7.0-2.el7.x86_64.rpm
gvnc-0.7.0-2.el7.i686.rpm
gvnc-0.7.0-2.el7.x86_64.rpm
gvnc-devel-0.7.0-2.el7.i686.rpm
gvnc-devel-0.7.0-2.el7.x86_64.rpm
gvnc-tools-0.7.0-2.el7.x86_64.rpm
gvncpulse-0.7.0-2.el7.i686.rpm
gvncpulse-0.7.0-2.el7.x86_64.rpm
gvncpulse-devel-0.7.0-2.el7.i686.rpm
gvncpulse-devel-0.7.0-2.el7.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/gtk-vnc-0.7.0-2.el7.src.rpm



Description of changes:

[0.7.0-2]
- Fix reserved data size (rhbz #1416783)
- Fix inverted args in tests (rhbz #1416783)	 - Avoid sign extension 
problems (rhbz #1416783)
- Fix crash with opening via GSocketAddress (rhbz #1416783)
- Fix crash & error reporting during connection timeout (rhbz #1441120)
- Fix incompatibility with libvncserver websockets (rhbz #921330)

[0.7.0-1]
- Update to 0.7.0 release (rhbz #1416783)
- Release held keys when loosing focus (rhbz #921008)
- Avoid warnings when disconnecting (rhbz #1126825)
- Workaround to avoid hang connecting to SPICE guest (rhbz #921330)
- CVE-2017-5884 - fix bounds checking for RRE, hextile and
   copyrect encodings (rhbz #1425367)
- CVE-2017-5885 - fix color map index bounds checking (rhbz #1425367)





More information about the El-errata mailing list