ELSA-2017-2471

ELSA-2017-2471 - spice security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2017-08-15

Description


[0.12.8-2.1]
- Redo build properly versioned as a zstream build
Related: CVE-2017-7506

[0.12.8-3]
- Prevent potential buffer/integer overflows with invalid MonitorsConfig messages
sent from an authenticated client
Resolves: CVE-2017-7506


Related CVEs


CVE-2017-7506

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) spice-0.12.8-2.el7.1.src.rpme41445c0b5555186447c1e3511ef72beELSA-2020-4187
spice-server-0.12.8-2.el7.1.x86_64.rpmcc689c558594916be665c17571ed1fd5ELSA-2020-4187
spice-server-devel-0.12.8-2.el7.1.x86_64.rpm31d89b48861fd15f3a5f9ea8265a9af5ELSA-2020-4187



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete