gpp_maybe
Security update for spice-vdagent
SUSE-SLE-Module-Desktop-Applications-15-SP3-2021-2614
This update for spice-vdagent fixes the following issues: - Update to version 0.21.0 - CVE-2020-25650: memory DoS via arbitrary entries in `active_xfers` hash table (bsc#1177780) - CVE-2020-25651: possible file transfer DoS and information leak via `active_xfers` hash map (bsc#1177781) - CVE-2020-25652: possibility to exhaust file descriptors in `vdagentd` (bsc#1177782) - CVE-2020-25653: UNIX domain socket peer PID retrieved via `SO_PEERCRED` is subject to race condition (bsc#1177783)
-
Release DateAug 5 2021
-
ReferencesBugzilla: 1173749, 1177781, 1177780, 1177782, 1177783
CVEs: CVE-2020-25651, CVE-2020-25652, CVE-2020-25653, CVE-2020-25650 -
Typesecurity
-
Severityimportant
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
Desktop Applications Module 15.3 aarch64
-
Packages
Desktop Applications Module 15.3 s390x
-
Packages
Desktop Applications Module 15.3 ppc64le
-
Packages
Desktop Applications Module 15.3 x86_64
-
Packages