ELSA-2013-1473

ELSA-2013-1473 - spice-server security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2013-10-29

Description


[0.12.0-12.5]
- Fix issue with error-handling of RSA_private_decrypt() in previous patch
Related: CVE-2013-4282

[0.12.0-12.el6_4.4]
- Fix buffer overflow when decrypting client SPICE ticket
Resolves: CVE-2013-4282


Related CVEs


CVE-2013-4282

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 6 (x86_64) spice-server-0.12.0-12.el6_4.5.src.rpmbab014cfcd244d78cb988718605a01f2ELSA-2019-0232
spice-server-0.12.0-12.el6_4.5.x86_64.rpm5389ae7ab591bf1785597341c778b555ELSA-2019-0232
spice-server-devel-0.12.0-12.el6_4.5.x86_64.rpmbd52152fa5aecaedeff899cd5d1879a4ELSA-2019-0232



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete