Bugzilla – Bug 1199751
VUL-0: CVE-2022-1736: gnome-control-center: GNOME Settings could allow unintended access to network services.
Last modified: 2022-05-20 09:15:01 UTC
rh#2088691 It was discovered that GNOME Settings incorrectly handled the remote desktop sharing configuration. When turning off desktop sharing, it may be turned on again after rebooting, contrary to expectations. References: https://ubuntu.com/security/notices/USN-5430-1 https://launchpad.net/ubuntu/+source/gnome-control-center/1:41.4-1ubuntu13.2 References: https://bugzilla.redhat.com/show_bug.cgi?id=2088691 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2022-1736
None of our SLE codestreams contain the RDP code, so only openSUSE:Factory is affected. Also, looking at the upstream discussion [0], this might only be relevant for Debian/Ubuntu. [0] https://gitlab.gnome.org/GNOME/gnome-control-center/-/issues/1825
Fixed here: https://gitlab.gnome.org/GNOME/gnome-control-center/-/commit/f94c96577bf375a8f5d4c978577acf565512ccaf