RHSA-2026:10739HighCVSS 7.8
Red Hat Security Advisory: tigervnc security update
🔗 CVE IDs covered (4)
📋 Description
CVE-2026-33999 — xorg: xwayland: X.Org X server: Denial of Service via integer underflow in XKB compatibility map handling CVE-2026-34001 — xorg: xwayland: X.Org X server: Use-after-free vulnerability leads to server crash and potential memory corruption CVE-2026-34003 — xorg: xwayland: X.Org X server: Information exposure and denial of service via out-of-bounds memory access CVE-2026-34352 — TigerVNC: x0vncserver: TigerVNC x0vncserver: Information disclosure, data manipulation, and denial of service via incorrect permissions
🔗 References (7)
- selfhttps://access.redhat.com/errata/RHSA-2026:10739
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2451106
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2451109
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2451113
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2452022
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_10739.json