Oval Definition:oval:org.opensuse.security:def:78268
Revision Date:2015-12-30Version:1
Title:Security update for LibVNCServer (Moderate)
Description:

The LibVNCServer package was updated to fix the following security issues:

- bsc#897031: fix several security issues: * CVE-2014-6051: Integer overflow in MallocFrameBuffer() on client side. * CVE-2014-6052: Lack of malloc() return value checking on client side. * CVE-2014-6053: Server crash on a very large ClientCutText message. * CVE-2014-6054: Server crash when scaling factor is set to zero. * CVE-2014-6055: Multiple stack overflows in File Transfer feature. - bsc#854151: Restrict the SSL cipher suite.
Family:unixClass:patch
Status:Reference(s):854151
897031
CVE-2014-6051
CVE-2014-6052
CVE-2014-6053
CVE-2014-6054
CVE-2014-6055
SUSE-SU-2015:2088-1
Platform(s):SUSE Linux Enterprise Desktop 12
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • libvncclient0-0.9.9-16.1 is installed
  • OR libvncserver0-0.9.9-16.1 is installed
  • BACK