spice 0.12.8-2.1 source package in Ubuntu
Changelog
spice (0.12.8-2.1) unstable; urgency=medium * Non-maintainer upload. * Add CVE-2016-9577-and-CVE-2016-9578.patch: - CVE-2016-9577: A buffer overflow vulnerability in main_channel_alloc_msg_rcv_buf was found that occurs when reading large messages due to missing buffer size check. - CVE-2016-9578: A vulnerability was discovered in the server's protocol handling. An attacker able to connect to the spice server could send crafted messages which would cause the process to crash. (Closes: #854336) -- Markus Koschany <email address hidden> Mon, 13 Feb 2017 21:42:01 +0100
See full publishing history Publishing
Series | Published | Component | Section |
---|
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
spice_0.12.8-2.1.dsc | 2.5 KiB | a3d26dc4c66dd84e3e954fc67cfbf28fad6a26cdded67278220aead4f9ad2f97 |
spice_0.12.8.orig.tar.bz2 | 1.2 MiB | f901a5c5873d61acac84642f9eea5c4d6386fc3e525c2b68792322794e1c407d |
spice_0.12.8-2.1.debian.tar.xz | 9.9 KiB | 15a39e0b0175b40cd8250bd56fae54128bbdfc2dccb7f61dc2cba73a5c1569ff |
Available diffs
No changes file available.
Binary packages built by this source
- libspice-server-dev: No summary available for libspice-server-dev in ubuntu artful.
No description available for libspice-server-dev in ubuntu artful.
- libspice-server1: No summary available for libspice-server1 in ubuntu artful.
No description available for libspice-server1 in ubuntu artful.
- libspice-server1-dbgsym: No summary available for libspice-server1-dbgsym in ubuntu artful.
No description available for libspice-
server1- dbgsym in ubuntu artful.