[ubuntu/bionic-security] spice 0.14.0-1ubuntu2.1 (Accepted)

Leonidas S. Barbosa leo.barbosa at canonical.com
Wed May 23 19:01:41 UTC 2018


spice (0.14.0-1ubuntu2.1) bionic-security; urgency=medium

  * SECURITY UPDATE: Integer overflow and buffer overflow
    - debian/patches/CVE-2017-12194-1.patch: fix a integer overflow
      computing sizes in spice-common/python_modules/demarshal.py.
    - debian/patches/CVE-2017-12194-2.patch: avoid integer overflow
      in spice-common/python_modules/demarshal.py,
      spice-common/python_modules/marshal.py.
    - debian/patches/CVE-2017-12194-3.patch: add tests to verify fix.
    - CVE-2017-12194

Date: 2018-05-22 19:08:14.337064+00:00
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
https://launchpad.net/ubuntu/+source/spice/0.14.0-1ubuntu2.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Bionic-changes mailing list