shield
Security update for libvncserver
SUSE-SLE-SERVER-12-SP1-2015-890
The LibVNCServer package was updated to fix the following security issues: - bsc#897031: fix several security issues: * CVE-2014-6051: Integer overflow in MallocFrameBuffer() on client side. * CVE-2014-6052: Lack of malloc() return value checking on client side. * CVE-2014-6053: Server crash on a very large ClientCutText message. * CVE-2014-6054: Server crash when scaling factor is set to zero. * CVE-2014-6055: Multiple stack overflows in File Transfer feature. - bsc#854151: Restrict the SSL cipher suite.
-
Release DateDec 30 2015
-
ReferencesBugzilla: 854151, 897031
CVEs: CVE-2014-6051, CVE-2014-6053, CVE-2014-6052, CVE-2014-6055, CVE-2014-6054 -
Typesecurity
-
Severitymoderate
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
SUSE Linux Enterprise Server 12.1 ppc64le
-
PackagesLibVNCServer
VNC Development Librarylibvncclient00.9.9-16.1 lock src
Library implementing a VNC clientlibvncserver00.9.9-16.1 lock rpm
Library implementing a VNC server0.9.9-16.1 lock rpm
SUSE Linux Enterprise Server 12.1 s390x
-
PackagesLibVNCServer
VNC Development Librarylibvncclient00.9.9-16.1 lock src
Library implementing a VNC clientlibvncserver00.9.9-16.1 lock rpm
Library implementing a VNC server0.9.9-16.1 lock rpm
SUSE Linux Enterprise Server for SAP Applications 12.1 x86_64
-
PackagesLibVNCServer
VNC Development Librarylibvncclient00.9.9-16.1 lock src
Library implementing a VNC clientlibvncserver00.9.9-16.1 lock rpm
Library implementing a VNC server0.9.9-16.1 lock rpm