RHSA-2026:19342HighCVSS 7.8
Red Hat Security Advisory: tigervnc security update
🔗 CVE IDs covered (5)
📋 Description
CVE-2026-33999 — xorg: xwayland: X.Org X server: Denial of Service via integer underflow in XKB compatibility map handling CVE-2026-34000 — xwayland: xorg: X.Org X server: Information disclosure and denial of service via out-of-bounds read in XKB geometry processing. CVE-2026-34001 — xorg: xwayland: X.Org X server: Use-after-free vulnerability leads to server crash and potential memory corruption CVE-2026-34003 — xorg: xwayland: X.Org X server: Information exposure and denial of service via out-of-bounds memory access CVE-2026-34352 — TigerVNC: x0vncserver: TigerVNC x0vncserver: Information disclosure, data manipulation, and denial of service via incorrect permissions
🔗 References (8)
- selfhttps://access.redhat.com/errata/RHSA-2026:19342
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2451106
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2451107
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2451109
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2451113
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2452022
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_19342.json