Oval Definition:oval:org.opensuse.security:def:78587
Revision Date:2016-06-13Version:1
Title:Security update for spice (Moderate)
Description:

spice was updated to fix four security issues.

These security issues were fixed: - CVE-2016-2150: Guest escape using crafted primary surface parameters (bsc#982386). - CVE-2016-0749: Heap-based buffer overflow in smartcard interaction (bsc#982385). - CVE-2015-5260: Insufficient validation of surface_id parameter could have caused a crash (bsc#944787). - CVE-2015-5261: Host memory access from guest using crafted images (bsc#948976).
Family:unixClass:patch
Status:Reference(s):944787
948976
982385
982386
CVE-2015-5260
CVE-2015-5261
CVE-2016-0749
CVE-2016-2150
SUSE-SU-2016:1559-1
Platform(s):SUSE Linux Enterprise Desktop 12 SP1
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND libspice-server1-0.12.5-4.1 is installed
  • BACK