libvncserver (SL7)

Synopsis: Important: libvncserver security update
Advisory ID: SLSA-2020:0913-1
Issue Date: 2020-03-23
CVE Numbers: CVE-2019-15690
CVE-2019-20788

Security Fix(es):

* libvncserver: HandleCursorShape() integer overflow resulting in
heap-based buffer overflow (CVE-2019-15690)

SL7
x86_64
libvncserver-0.9.9-14.el7_7.i686.rpm
libvncserver-0.9.9-14.el7_7.x86_64.rpm
libvncserver-debuginfo-0.9.9-14.el7_7.i686.rpm
libvncserver-debuginfo-0.9.9-14.el7_7.x86_64.rpm
libvncserver-devel-0.9.9-14.el7_7.i686.rpm
libvncserver-devel-0.9.9-14.el7_7.x86_64.rpm

– Scientific Linux Development Team