Back Linuxsecurity openSUSE tigervnc Important Access Control Patch CVE-2026-34352 2026-1303
This update for tigervnc fixes the following issues: * CVE-2026-34352: Fixed permissions to prevent other users from observing the screen, or modifying what is sent to the client. (bsc#1260871)
## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2026-1303=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2026-1303=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2026-1303=1 * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2026-1303=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2026-1303=1
## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
zypper in -t patch SUSE-2026-1303=1
* SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4
zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2026-1303=1
* SUSE Linux Enterprise High Performance Computing LTSS 15 SP4
zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2026-1303=1
* SUSE Linux Enterprise Server 15 SP4 LTSS
zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2026-1303=1
* SUSE Linux Enterprise Server for SAP Applications 15 SP4
zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2026-1303=1
* openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64 i586) * tigervnc-debugsource-1.10.1-150400.7.15.1 * xorg-x11-Xvnc-1.10.1-150400.7.15.1 * tigervnc-debuginfo-1.10.1-150400.7.15.1 * tigervnc-1.10.1-150400.7.15.1 * libXvnc-devel-1.10.1-150400.7.15.1 * libXvnc1-debuginfo-1.10.1-150400.7.15.1 * xorg-x11-Xvnc-debuginfo-1.10.1-150400.7.15.1 * libXvnc1-1.10.1-150400.7.15.1 * openSUSE Leap 15.4 (noarch) * tigervnc-x11vnc-1.10.1-150400.7.15.1 * xorg-x11-Xvnc-java-1.10.1-150400.7.15.1 * xorg-x11-Xvnc-novnc-1.10.1-150400.7.15.1 * openSUSE Leap 15.4 (aarch64 ppc64le x86_64 i586) * xorg-x11-Xvnc-module-1.10.1-150400.7.15.1 * xorg-x11-Xvnc-module-debuginfo-1.10.1-150400.7.15.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * tigervnc-debugsource-1.10.1-150400.7.15.1 * xorg-x11-Xvnc-1.10.1-150400.7.15.1 * tigervnc-debuginfo-1.10.1-150400.7.15.1 * tigervnc-1.10.1-150400.7.15.1 * Read the Full Advisory
* openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64 i586)
* tigervnc-debugsource-1.10.1-150400.7.15.1
* xorg-x11-Xvnc-1.10.1-150400.7.15.1
* tigervnc-debuginfo-1.10.1-150400.7.15.1
* tigervnc-1.10.1-150400.7.15.1
* libXvnc-devel-1.10.1-150400.7.15.1
* libXvnc1-debuginfo-1.10.1-150400.7.15.1
* xorg-x11-Xvnc-debuginfo-1.10.1-150400.7.15.1
* libXvnc1-1.10.1-150400.7.15.1
* openSUSE Leap 15.4 (noarch)
* tigervnc-x11vnc-1.10.1-150400.7.15.1
* xorg-x11-Xvnc-java-1.10.1-150400.7.15.1
* xorg-x11-Xvnc-novnc-1.10.1-150400.7.15.1
* openSUSE Leap 15.4 (aarch64 ppc64le x86_64 i586)
* xorg-x11-Xvnc-module-1.10.1-150400.7.15.1
* xorg-x11-Xvnc-module-debuginfo-1.10.1-150400.7.15.1
* SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64
* tigervnc-debugsource-1.10.1-150400.7.15.1
* xorg-x11-Xvnc-1.10.1-150400.7.15.1
* tigervnc-debuginfo-1.10.1-150400.7.15.1
* tigervnc-1.10.1-150400.7.15.1
* bsc#1260871 ## References: * *
*
*
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
