Bug 27684 - x11vnc new security issue CVE-2020-29074
Summary: x11vnc new security issue CVE-2020-29074
Status: RESOLVED FIXED
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: 7
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: QA Team
QA Contact: Sec team
URL:
Whiteboard: MGA7-64-OK
Keywords: advisory, validated_update
Depends on:
Blocks:
 
Reported: 2020-11-29 16:57 CET by David Walser
Modified: 2020-12-08 11:41 CET (History)
4 users (show)

See Also:
Source RPM: x11vnc-0.9.16-1.mga7.src.rpm
CVE: CVE-2020-29074
Status comment:


Attachments

Description David Walser 2020-11-29 16:57:34 CET
Debian has issued an advisory on November 28:
https://www.debian.org/security/2020/dsa-4799

Mageia 7 is also affected.
David Walser 2020-11-29 16:57:41 CET

Whiteboard: (none) => MGA7TOO

Comment 1 Lewis Smith 2020-11-29 20:13:25 CET
In the absence of any consistent maintainer for x11vnc, must assign this globally.

Assignee: bugsquad => pkg-bugs

Comment 2 Nicolas Salguero 2020-12-01 16:04:23 CET
Suggested advisory:
========================

The updated package fixes a security vulnerability:

scan.c in x11vnc 0.9.16 uses IPC_CREAT|0777 in shmget calls, which allows access by actors other than the current user. (CVE-2020-29074)

References:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-29074
https://www.debian.org/security/2020/dsa-4799
========================

Updated package in core/updates_testing:
========================
x11vnc-0.9.16-1.1.mga7

from SRPM:
x11vnc-0.9.16-1.1.mga7.src.rpm

Assignee: pkg-bugs => qa-bugs
Source RPM: x11vnc-0.9.16-3.mga8.src.rpm => x11vnc-0.9.16-1.mga7.src.rpm
Whiteboard: MGA7TOO => (none)
Status: NEW => ASSIGNED
CC: (none) => nicolas.salguero
Version: Cauldron => 7
CVE: (none) => CVE-2020-29074

Comment 3 PC LX 2020-12-01 23:18:03 CET
Installed and tested without issue.

Tested with vncviewer, krdc and novnc_server clients.


System: Mageia 7, x86_64, Plasma DE, LXQt DE, Intel CPU, nVidia GPU using nvidia-current proprietary driver.


$ uname -a
Linux marte 5.7.19-desktop-3.mga7 #1 SMP Sun Oct 18 15:46:00 UTC 2020 x86_64 x86_64 x86_64 GNU/Linux
$ rpm -q x11vnc
x11vnc-0.9.16-1.1.mga7
$ x11vnc -display :0
<SNIP>
The VNC desktop is:      marte:0
PORT=5900
<SNIP>
$ vncviewer localhost:0
<SNIP>
 CConn:       Conectado ao host marte porta 5900
<SNIP>

CC: (none) => mageia

Comment 4 PC LX 2020-12-06 14:52:31 CET
This update has been in use for almost a week without issues so I'm OKing this for x86_64 (see comment 3). Please unOK if you think its appropriate.

Whiteboard: (none) => MGA7-64-OK

Comment 5 Aurelien Oudelet 2020-12-07 10:53:18 CET
Validating.
Advisory pushed to SVN.

Keywords: (none) => advisory, validated_update
CC: (none) => ouaurelien, sysadmin-bugs

Comment 6 Mageia Robot 2020-12-08 11:41:49 CET
An update for this issue has been pushed to the Mageia Updates repository.

https://advisories.mageia.org/MGASA-2020-0454.html

Status: ASSIGNED => RESOLVED
Resolution: (none) => FIXED


Note You need to log in before you can comment on or make changes to this bug.