spice 0.12.8-2ubuntu1.1 source package in Ubuntu

Changelog

spice (0.12.8-2ubuntu1.1) zesty-security; urgency=medium

  * SECURITY UPDATE: buffer overflow via invalid monitor configurations
    - debian/patches/CVE-2017-7506-1.patch: disconnect when receiving
      overly big ClientMonitorsConfig in server/reds.c.
    - debian/patches/CVE-2017-7506-2.patch: avoid integer overflows
      handling monitor configuration in server/reds.c.
    - debian/patches/CVE-2017-7506-3.patch: avoid buffer overflows handling
      monitor configuration in server/reds.c.
    - CVE-2017-7506

 -- Marc Deslauriers <email address hidden>  Tue, 18 Jul 2017 13:33:41 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Zesty
Original maintainer:
Ubuntu Developers
Architectures:
alpha amd64 arm64 armel armhf i386 mips64el mipsel ppc64el sh4 x32
Section:
misc
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
spice_0.12.8.orig.tar.bz2 1.2 MiB f901a5c5873d61acac84642f9eea5c4d6386fc3e525c2b68792322794e1c407d
spice_0.12.8-2ubuntu1.1.debian.tar.xz 11.9 KiB 6d44c43cda8d523ba411f1ba96ac0d2e6da4c4481c12ef650caa4bd16e5e0cf9
spice_0.12.8-2ubuntu1.1.dsc 2.4 KiB be147418401f32a18673efe4616267271abcad6299ac672b8d3ea703919346b2

View changes file

Binary packages built by this source

libspice-server-dev: No summary available for libspice-server-dev in ubuntu zesty.

No description available for libspice-server-dev in ubuntu zesty.

libspice-server1: No summary available for libspice-server1 in ubuntu zesty.

No description available for libspice-server1 in ubuntu zesty.

libspice-server1-dbgsym: No summary available for libspice-server1-dbgsym in ubuntu zesty.

No description available for libspice-server1-dbgsym in ubuntu zesty.