Changelog for
libXvnc1-debuginfo-1.6.0-19.2.x86_64.rpm :
* Fri Apr 07 2017 msrbAATTsuse.com- U_tigervnc-limit-size-of-cursor-accepted-by-client.patch
* Prevent buffer overflow in VNC client. (bnc#1032880)
* Wed Apr 05 2017 msrbAATTsuse.com- U_tigervnc-better-check-for-screen-visibility.patch
* Crop operations to visible screen. (bnc#1032272)
* Fri Mar 31 2017 msrbAATTsuse.com- U_tigervnc-delete-underlying-ssecurity-in-SSecurityVeNCrypt.patch, U_tigervnc-prevent-leak-of-SecurityServer-and-ClientServer.patch
* Prevent leaks in VNC server. (bnc#bnc#1031886)- U_tigervnc-fix-crash-from-integer-overflow-in-SMsgReader-readClientCutText.patch
* Prevent clients crashing VNC server. (bnc#1031877)- U_tigervnc-fix-checkNoWait-logic-in-SSecurityPlain.patch, U_tigervnc-limit-max-username-password-size-in-SSecurityPlain.patch
* Prevent multiple security issues in security Plain. (bnc#1031879)- U_tigervnc-prevent-double-free-by-crafted-fences.patch
* Prevent double free in VNC server. (bnc#1031875)
* Mon Mar 27 2017 msrbAATTsuse.com- U_tigervnc-restore-cropping-API-to-maskRect.patch, U_tigervnc-crop-cursor-before-calling-maskRect.patch
* Prevent client disconnection caused by invalid cursor manipulation. (bnc#1024929, bnc#1031045)
* Thu Mar 02 2017 msrbAATTsuse.com- Readd index.vnc. (bnc#1026833)
* Thu Feb 02 2017 msrbAATTsuse.com- U_tigervnc_proper_global_init_deinit_of_GnuTLS.patch
* Prevent crash caused by failed TLS connection. (bnc#1023012)
* Wed Jan 18 2017 msrbAATTsuse.com- U_tigervnc-fix-buffer-overflow-in-ModifiablePixelBuffer-fillRect.patch, U_tigervnc-prevent-invalid-PixelBuffer-accesses.patch, U_tigervnc-check-invalid-RRE-rects.patch
* Fix buffer overflow in client caused by malicious server. (bnc#1019274)
* Thu Jun 16 2016 msrbAATTsuse.com- Generate VNC key and certificate on first use, not during installation. (bnc#982349)
* Thu Jun 09 2016 msrbAATTsuse.com- U_tigervnc_clear_up_zlibinstream_reset_behaviour.patch
* Fix zlib stream reset in tight encoding. (bnc#963417)- Marking bnc#964352 (xkbcomp dependency) as fixed.
* Thu May 19 2016 msrbAATTsuse.com- Add /etc/pam.d/vnc configuration and add vnc user to shadow group. (bnc#980326)
* Thu Apr 28 2016 msrbAATTsuse.com- Add u_tigervnc-show-unencrypted-warning.patch (fate#319701)
* Wed Apr 27 2016 msrbAATTsuse.com- Add dependency on xorg-x11-fonts-core. (bnc#977019)
* Mon Apr 11 2016 msrbAATTsuse.com- Remove unnecessary dependency on icewm.
* Fri Apr 08 2016 sndirschAATTsuse.com- buildrequire specific xorg-x11-server-source version (currently 1.18.3) in order to prevent incomprehensible patch failures
* Tue Apr 05 2016 msrbAATTsuse.com- Update to tigervnc 1.6.0. (fate#319701, fate#319319, bnc#952057)- N_tigervnc_revert_fltk_1_3_3_requirements.patch
* Stay compatible with fltk 1.3.2.- u_xserver118.patch
* Build with X Server 1.18- u_tigervnc_update_default_vncxstartup.patch
* Update default VNC xstartup script.- u_add_allowoverride_parameter.patch
* Add option to to specify which parameters can be set from inside VNC session. (fate#319319)- u_build_libXvnc_as_separate_library.patch
* Allows other applications to use XVNC extension. (fate#319319)- Remove upstreamed or obsolete patches:
* U_support_ipv6.patch
* n_tigervnc_Revert_Attempt_to_handle_Ctrl-key.patch
* tigervnc-sf3495623.patch
* u_syslog.patch
* u_terminate_instead_of_ignoring_restart.patch
* u_tigervnc-display-SHA-1-fingerprint-of-untrusted-certificate.patch
* u_tigervnc-dont-send-ascii-control-characters.patch
* u_tigervnc-prioritize-anon-ecdh.patch
* u_tigervnc-send-special-keys-directly.patch
* u_tigervnc-use-default-trust-manager-in-java-viewer-if-custom.patch
* u_tigervnc-use_preferred_mode.patch
* u_tigervnc-vncserver-clean-pid-files.patch
* Thu Oct 22 2015 msrbAATTsuse.com- U_support_ipv6.patch
* Bind to both ipv4 and ipv6 addresses. (bnc#951281)
* Wed Oct 14 2015 msrbAATTsuse.com- u_tigervnc-prioritize-anon-ecdh.patch
* Prefer ANON-ECDH over ANON-DH cipher to avoid java bug. (bnc#950147)
* Mon Oct 05 2015 msrbAATTsuse.com- u_tigervnc-vncserver-clean-pid-files.patch
* vncserver: Clean pid files of dead processes. (bnc#948392)
* Wed Aug 26 2015 msrbAATTsuse.com- Remove commented out DefaultDepth 16 from 10-libvnc.conf file. Using 16 bit depth can cause troubles and does not have any positives anymore, so lets not suggest it to users. (bnc#942982)
* Tue Aug 11 2015 msrbAATTsuse.com- Readd index.vnc. (bnc#941123)
* Tue Jul 28 2015 msrbAATTsuse.com- Update tigervnc configuration safely. (bnc#939099)
* Tue Jul 07 2015 msrbAATTsuse.com- Use xserver sources from xorg-x11-server-source. - Drop xserver patches. (They are present in xorg-x11-server.)- Use encryption everywhere. (fate#318936)
* Wed Apr 01 2015 msrbAATTsuse.com- u_terminate_instead_of_ignoring_restart.patch
* Terminate instead of ignoring restart. (bnc#920969)
* Thu Feb 12 2015 msrbAATTsuse.com- U_xkb-check-strings-length-against-request-size.patch
* Check string lenghts in XkbSetGeometry request. (bnc#915810, CVE-2015-0255)
* Mon Feb 02 2015 msrbAATTsuse.com- n_tigervnc_Revert_Attempt_to_handle_Ctrl-key.patch
* Revert bugged upstream commit. (bnc#915782)- Rebuild against fltk backported patches for cursor and clipboard handling. (bnc#908738)- Update to tigervnc 1.4.1 and X server 1.15.2. (Required for security patches.) (bnc#911577)- Synchronize patches from xorg-x11-server that are relevant for Xvnc:
* U_BellProc-Send-bell-event-on-core-protocol-bell-when-requested.patch
* U_Xi_unvalidated_lengths_in_Xinput_extension.patch
* U_Xv_unvalidated_lengths_in_XVideo_extension_swapped_procs.patch
* U_dbe_Call_to_DDX_SwapBuffers_requires_address_of_int_not_unsigned_int.patch
* U_dbe_unvalidated_lengths_in_DbeSwapBuffers_calls.patch
* U_dix_GetHosts_bounds_check_using_wrong_pointer_value.patch
* U_dix_Missing_parens_in_REQUEST_FIXED_SIZE_macro.patch
* U_dix_integer_overflow_in_GetHosts.patch
* U_dix_integer_overflow_in_ProcPutImage.patch
* U_dix_integer_overflow_in_REQUEST_FIXED_SIZE.patch
* U_dix_integer_overflow_in_RegionSizeof.patch
* U_fb-Fix-invalid-bpp-for-24bit-depth-window.patch
* U_glx_Add_safe__add_mul_pad.patch
* U_glx_Additional_paranoia_in___glXGetAnswerBuffer___GLX_GET_ANSWER_BUFFER.patch
* U_glx_Be_more_paranoid_about_variable_length_requests.patch
* U_glx_Be_more_strict_about_rejecting_invalid_image_sizes.patch
* U_glx_Fix_image_size_computation_for_EXT_texture_integer.patch
* U_glx_Fix_mask_truncation_in___glXGetAnswerBuffer.patch
* U_glx_Integer_overflow_protection_for_non_generated_render_requests.patch
* U_glx_Length_checking_for_GLXRender_requests.patch
* U_glx_Length_checking_for_RenderLarge_requests.patch
* U_glx_Length_checking_for_non_generated_single_request.patch
* U_glx_Length_checking_for_non_generated_vendor_private_requests.patch
* U_glx_Pass_remaining_request_length_into_varsize.patch
* U_glx_Request_length_checks_for_SetClientInfoARB.patch
* U_glx_Top_level_length_checking_for_swapped_VendorPrivate_requests.patch
* U_randr_unvalidated_lengths_in_RandR_extension_swapped_procs.patch
* U_render_check_request_size_before_reading_it.patch
* U_render_unvalidated_lengths_in_Render_extn_swapped_procs.patch
* U_unchecked_malloc_may_allow_unauthed_client_to_crash_Xserver.patch
* U_xcmisc_unvalidated_length_in_SProcXCMiscGetXIDList.patch
* U_xfixes_unvalidated_length_in_SProcXFixesSelectSelectionInput.patch
* n_tigervnc-date-time.patch- Drop upstreamed/obsolete patches:
* U_tigervnc-dont-check-inputs-with-assert.patch
* U_tigervnc-use-asserts-in-release.patch
* tigervnc-1.2.80-fix-int-to-pointer.patch
* tigervnc-sf3492352.diff
* u_aarch64-support.patch
* u_tigervnc-1.3.0-fix-use-after-free.patch
* u_tigervnc-check-shm-harder.patch
* Tue Nov 25 2014 msrbAATTsuse.com- Add u_tigervnc-send-special-keys-directly.patch, fix u_tigervnc-dont-send-ascii-control-characters.patch
* Send correctly keys that don\'t type any characters, such as CTRL+Space. (bnc#906922)
* Thu Oct 30 2014 msrbAATTsuse.com- u_tigervnc-cve-2014-8240.patch
* Prevent potentially dangerous integer overflow. (bnc#900896 CVE-2014-8240)
* Thu Sep 25 2014 msrbAATTsuse.com- u_tigervnc-use_preferred_mode.patch
* Mark user chosen resolution as preferred. (bnc#896540)
* Mon Aug 18 2014 msrbAATTsuse.com- Obsolete tightvnc <= 1.3.9 for proper upgrade from SLE11. (bnc#891982)
* Tue Aug 12 2014 msrbAATTsuse.com- u_tigervnc-check-shm-harder.patch
* Check if SHM really works before deciding to use it. (bnc#890580)
* Fri Aug 01 2014 msrbAATTsuse.com- U_include-vencrypt-only-if-any-subtype-present.patch
* Do not automatically offer VeNCrypt security if none of it\'s subtypes is selected. (bnc#889781)
* Wed Jul 23 2014 msrbAATTsuse.com- Fix mistakes in spec file. (bnc#888371)
* Wed May 28 2014 msrbAATTsuse.com- Use update-alternatives.
* Thu May 08 2014 msrbAATTsuse.com- u_tigervnc-ignore-epipe-on-write.patch
* Do not display error message because of EPIPE on write. (bnc#864676)
* Sat Apr 26 2014 sndirschAATTsuse.com- xorg-x11-Xvnc: require xkeyboard-config (bnc#875329)
* Thu Apr 24 2014 msrbAATTsuse.com- vnc.xinetd
* Do not use 16 bpp by default anymore. The network trafic gain of 16 bpp together with Tight encoding is arguable. 16 bpp causes graphical issues and is known to not work properly in Mesa. (bnc#871965)
* Fri Mar 21 2014 msrbAATTsuse.com- U_tigervnc-dont-check-inputs-with-assert.patch and U_tigervnc-use-asserts-in-release.patch
* Fix security issue. (bnc#869307, CVE-2014-0011)
* Wed Mar 19 2014 roAATTsuse.de- excludearch s390 (would need compilation with fPIC as well but common/CMakeLists.txt does this only on 64bit)
* Mon Mar 17 2014 msrbAATTsuse.com- Update HTML page that serves vnc client applet. (bnc#867273)- u_tigervnc-dont-send-ascii-control-characters.patch
* Send CTRL+[A-Z] combinations instead of ascii control characters. (bnc#864666)
* Fri Feb 21 2014 dvaleevAATTsuse.com- Add ppc64le support (bnc#865069)- added patches:
* u_ppc64le-support.patch
* Thu Feb 13 2014 msrbAATTsuse.com- Readd vncpasswd.arg for compatibility with installation system and potentially another users. (bnc#855246)
* Fri Feb 07 2014 msrbAATTsuse.com- Drop tigervnc-sf3492503.diff, tigervnc-sf3495623.diff and xorg-bug38185.patch (not used and not needed).- Update tigervnc-sf3492352.diff and tigervnc-sf3495623.patch.
* Wed Feb 05 2014 msrbAATTsuse.com- N_use-icewm.patch
* Switch fallback WM to icewm in vncserver script. (bnc#862315)
* Fri Jan 10 2014 sndirschAATTsuse.com- do not include vnc Xserver module and xorg.conf snippet on s390x
* Thu Jan 09 2014 msrbAATTsuse.com- Remove unnecessary BuildRequires for binutils-gold.
* Mon Dec 16 2013 msrbAATTsuse.com- Exclude xorg-server-1.13.0/hw/xfree86/modes/xf86gtf.c and xorg-server-1.13.0/hw/xfree86/utils/gtf/gtf.c from xserver sources. (bnc#855566)- n_tigervnc-dont-build-gtf.patch
* Fix build with gtf files excluded. (bnc#855566)
* Tue Dec 03 2013 msrbAATTsuse.com- tigervnc-clean-pressed-key-on-exit.patch
* Send release events for pressed keys after X I/O error. (bnc#670448)
* Mon Nov 18 2013 msrbAATTsuse.com- Update to 1.3.0.- Build xorg-x11-Xvnc package from this sources.
* Wed Sep 19 2012 wernerAATTsuse.de- Make it build with latest TeXLive 2012 and use pdf engine
* Wed Mar 21 2012 jengelhAATTmedozas.de- Add missing tarball- Parallel build with %_smp_mflags- Remove redundant sections
* Fri Feb 24 2012 giecriljAATTstegny.2a.pl- bump to 1.1 (current stable)- add documentation (bnc#748504)- build dynamic server- eliminate gethostbyname, patch submitted upstream- incidental clean-up
* Wed Feb 09 2011 sndirschAATTnovell.com- added jpeg-devel to BuildRequires
* Wed Feb 09 2011 sndirschAATTnovell.com- use system jpeg for building- fixed xkb path- added more reasonable options for Xvfb building
* Wed Feb 09 2011 sndirschAATTnovell.com- added Reinhard\'s xdmcp fix (bnc #625593)
* Wed Feb 09 2011 sndirschAATTnovell.com- TigerVNC build
* fix fontpatch
* cleanup
* Wed Feb 09 2011 sndirschAATTnovell.com- build Xvnc of TigerVNC project when %tigervnc is set; make this the default for now
* Tue Feb 08 2011 sndirschAATTnovell.com- latest version of Perl script
* Thu Feb 03 2011 sndirschAATTnovell.com- renamed package from xorg-x11-Xvnc-ng to xorg-x11-Xvnc
* Thu Feb 03 2011 sndirschAATTnovell.com- rewritten wrapper script in Perl
* Wed Jan 26 2011 sndirschAATTnovell.com- added services file for SuSEfirewall2
* Wed Jan 26 2011 sndirschAATTnovell.com- created package