shield
Security update for spice
SUSE-SLE-SDK-12-SP1-2016-925
spice was updated to fix four security issues. These security issues were fixed: - CVE-2016-2150: Guest escape using crafted primary surface parameters (bsc#982386). - CVE-2016-0749: Heap-based buffer overflow in smartcard interaction (bsc#982385). - CVE-2015-5260: Insufficient validation of surface_id parameter could have caused a crash (bsc#944787). - CVE-2015-5261: Host memory access from guest using crafted images (bsc#948976).
-
Release DateJun 13 2016
-
ReferencesBugzilla: 982385, 982386, 944787, 948976
CVEs: CVE-2016-0749, CVE-2016-2150, CVE-2015-5260, CVE-2015-5261 -
Typesecurity
-
Severitymoderate
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
SUSE Linux Enterprise Software Development Kit 12.1 x86_64
-
Packageslibspice-server-devel
Development files for building SPICE-serverspice0.12.5-4.1 lock rpm
SPICE client and server library0.12.5-4.1 lock src