Oval Definition:oval:org.opensuse.security:def:65298
Revision Date:2021-08-05Version:1
Title:Security update for spice-vdagent (Important)
Description:

This update for spice-vdagent fixes the following issues:

- Update to version 0.21.0 - CVE-2020-25650: memory DoS via arbitrary entries in `active_xfers` hash table (bsc#1177780) - CVE-2020-25651: possible file transfer DoS and information leak via `active_xfers` hash map (bsc#1177781) - CVE-2020-25652: possibility to exhaust file descriptors in `vdagentd` (bsc#1177782) - CVE-2020-25653: UNIX domain socket peer PID retrieved via `SO_PEERCRED` is subject to race condition (bsc#1177783)
Family:unixClass:patch
Status:Reference(s):1122675
1133291
1135715
1173749
1177780
1177781
1177782
1177783
CVE-2019-3681
CVE-2019-6237
CVE-2019-8571
CVE-2019-8583
CVE-2019-8584
CVE-2019-8586
CVE-2019-8587
CVE-2019-8594
CVE-2019-8595
CVE-2019-8596
CVE-2019-8597
CVE-2019-8601
CVE-2019-8607
CVE-2019-8608
CVE-2019-8609
CVE-2019-8610
CVE-2019-8611
CVE-2019-8615
CVE-2019-8619
CVE-2019-8622
CVE-2019-8623
CVE-2020-25650
CVE-2020-25651
CVE-2020-25652
CVE-2020-25653
SUSE-SU-2020:1695-1
SUSE-SU-2021:2614-1
Platform(s):SUSE Linux Enterprise Desktop 15 SP3
SUSE Linux Enterprise High Performance Computing 15 SP3
SUSE Linux Enterprise Module for Desktop Applications 15 SP3
SUSE Linux Enterprise Module for Development Tools 15 SP1
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
SUSE Linux Enterprise Server 15 SP3
SUSE Linux Enterprise Server for SAP Applications 15 SP3
SUSE Manager Proxy 4.2
SUSE Manager Server 4.2
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Development Tools 15 SP1 is installed
  • AND osc-0.169.1-3.20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
  • AND Package Information
  • libjavascriptcoregtk-4_0-18-32bit-2.24.2-3.27 is installed
  • OR libwebkit2gtk-4_0-37-32bit-2.24.2-3.27 is installed
  • OR webkit-jsc-4-2.24.2-3.27 is installed
  • OR webkit2gtk3-2.24.2-3.27 is installed
  • OR webkit2gtk3-minibrowser-2.24.2-3.27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 SP3 is installed
  • AND spice-vdagent-0.21.0-3.3.1 is installed
  • BACK