gpp_maybe
Security update for spice-vdagent
SUSE-SLE-Module-Desktop-Applications-15-SP2-2020-3268
This update for spice-vdagent fixes the following issues: Security issues fixed: - CVE-2020-25650: Fixed a memory DoS via arbitrary entries in `active_xfers` hash table (bsc#1177780). - CVE-2020-25651: Fixed a possible file transfer DoS and information leak via `active_xfers` hash map (bsc#1177781). - CVE-2020-25652: Fixed a possibility to exhaust file descriptors in `vdagentd` (bsc#1177782). - CVE-2020-25653: Fixed a race condition when the UNIX domain socket peer PID retrieved via `SO_PEERCRED` (bsc#1177783).
-
Release DateNov 10 2020
-
ReferencesBugzilla: 1173749, 1177780, 1177781, 1177782, 1177783
CVEs: CVE-2020-25650, CVE-2020-25651, CVE-2020-25652, CVE-2020-25653 -
Typesecurity
-
Severityimportant
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
Desktop Applications Module 15.2 s390x
-
Packages
Desktop Applications Module 15.2 aarch64
-
Packages
Desktop Applications Module 15.2 ppc64le
-
Packages
Desktop Applications Module 15.2 x86_64
-
Packages