--------------------------------------------------------------------------------Fedora Update Notification
FEDORA-2019-b2d986c3e9
2019-04-05 01:54:23.968349
--------------------------------------------------------------------------------Name        : gnome-boxes
Product     : Fedora 28
Version     : 3.28.5
Release     : 2.fc28
URL         : https://wiki.gnome.org/Apps/Boxes
Summary     : A simple GNOME 3 application to access remote or virtual systems
Description :
gnome-boxes lets you easily create, setup, access, and use:
  * remote machines
  * remote virtual machines
  * local virtual machines
  * When technology permits, set up access for applications on
    local virtual machines

--------------------------------------------------------------------------------Update Information:

FreeRDP fix for CVE-2018-1000852, Remmina bugfix update and rebuilds for updated
FreeRDP.
--------------------------------------------------------------------------------ChangeLog:

* Thu Feb 28 2019 Simone Caronni  - 3.28.5-2
- Rebuild for FreeRDP update.
* Fri Jun  8 2018 Debarshi Ray  - 3.28.5-1
- Update to 3.28.5
* Wed May  9 2018 Kalev Lember  - 3.28.4-1
- Update to 3.28.4
* Tue May  8 2018 Kalev Lember  - 3.28.3-1
- Update to 3.28.3
* Mon Apr 30 2018 Cole Robinson  - 3.28.2-1.fc28.1
- Re-enable libvirt-daemon-config-network dep, see bz 1164492#c71
--------------------------------------------------------------------------------References:

  [ 1 ] Bug #1635839 - [abrt] vinagre: init_freerdp(): vinagre killed by SIGSEGV
        https://bugzilla.redhat.com/show_bug.cgi?id=1635839
  [ 2 ] Bug #1655205 - [abrt] vinagre: init_freerdp(): vinagre killed by SIGSEGV
        https://bugzilla.redhat.com/show_bug.cgi?id=1655205
  [ 3 ] Bug #1677320 - Cannot connect to xrdp server
        https://bugzilla.redhat.com/show_bug.cgi?id=1677320
  [ 4 ] Bug #1684154 - CVE-2018-8786 freerdp: Integer truncation leading to heap-based buffer overflow in update_read_bitmap_update() function [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=1684154
  [ 5 ] Bug #1661642 - CVE-2018-1000852 freerdp: out of bounds read in drdynvc_process_capability_request [fedora-28]
        https://bugzilla.redhat.com/show_bug.cgi?id=1661642
  [ 6 ] Bug #1665682 - [abrt] remmina: poll_for_event(): remmina killed by SIGABRT
        https://bugzilla.redhat.com/show_bug.cgi?id=1665682
  [ 7 ] Bug #1660515 - Remmina NX plugin no longer works
        https://bugzilla.redhat.com/show_bug.cgi?id=1660515
  [ 8 ] Bug #1667632 - remmina-1.3.3 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1667632
--------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2019-b2d986c3e9' at the command
line. For more information, refer to the dnf documentation available at
https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/security/
--------------------------------------------------------------------------------_______________________________________________
package-announce mailing list -- package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Fedora 28: gnome-boxes Security Update

April 4, 2019
FreeRDP fix for CVE-2018-1000852, Remmina bugfix update and rebuilds for updated FreeRDP.

Summary

gnome-boxes lets you easily create, setup, access, and use:

* remote machines

* remote virtual machines

* local virtual machines

* When technology permits, set up access for applications on

local virtual machines

FreeRDP fix for CVE-2018-1000852, Remmina bugfix update and rebuilds for updated

FreeRDP.

* Thu Feb 28 2019 Simone Caronni - 3.28.5-2

- Rebuild for FreeRDP update.

* Fri Jun 8 2018 Debarshi Ray - 3.28.5-1

- Update to 3.28.5

* Wed May 9 2018 Kalev Lember - 3.28.4-1

- Update to 3.28.4

* Tue May 8 2018 Kalev Lember - 3.28.3-1

- Update to 3.28.3

* Mon Apr 30 2018 Cole Robinson - 3.28.2-1.fc28.1

- Re-enable libvirt-daemon-config-network dep, see bz 1164492#c71

[ 1 ] Bug #1635839 - [abrt] vinagre: init_freerdp(): vinagre killed by SIGSEGV

https://bugzilla.redhat.com/show_bug.cgi?id=1635839

[ 2 ] Bug #1655205 - [abrt] vinagre: init_freerdp(): vinagre killed by SIGSEGV

https://bugzilla.redhat.com/show_bug.cgi?id=1655205

[ 3 ] Bug #1677320 - Cannot connect to xrdp server

https://bugzilla.redhat.com/show_bug.cgi?id=1677320

[ 4 ] Bug #1684154 - CVE-2018-8786 freerdp: Integer truncation leading to heap-based buffer overflow in update_read_bitmap_update() function [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=1684154

[ 5 ] Bug #1661642 - CVE-2018-1000852 freerdp: out of bounds read in drdynvc_process_capability_request [fedora-28]

https://bugzilla.redhat.com/show_bug.cgi?id=1661642

[ 6 ] Bug #1665682 - [abrt] remmina: poll_for_event(): remmina killed by SIGABRT

https://bugzilla.redhat.com/show_bug.cgi?id=1665682

[ 7 ] Bug #1660515 - Remmina NX plugin no longer works

https://bugzilla.redhat.com/show_bug.cgi?id=1660515

[ 8 ] Bug #1667632 - remmina-1.3.3 is available

https://bugzilla.redhat.com/show_bug.cgi?id=1667632

su -c 'dnf upgrade --advisory FEDORA-2019-b2d986c3e9' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

FEDORA-2019-b2d986c3e9 2019-04-05 01:54:23.968349 Product : Fedora 28 Version : 3.28.5 Release : 2.fc28 URL : https://wiki.gnome.org/Apps/Boxes Summary : A simple GNOME 3 application to access remote or virtual systems Description : gnome-boxes lets you easily create, setup, access, and use: * remote machines * remote virtual machines * local virtual machines * When technology permits, set up access for applications on local virtual machines FreeRDP fix for CVE-2018-1000852, Remmina bugfix update and rebuilds for updated FreeRDP. * Thu Feb 28 2019 Simone Caronni - 3.28.5-2 - Rebuild for FreeRDP update. * Fri Jun 8 2018 Debarshi Ray - 3.28.5-1 - Update to 3.28.5 * Wed May 9 2018 Kalev Lember - 3.28.4-1 - Update to 3.28.4 * Tue May 8 2018 Kalev Lember - 3.28.3-1 - Update to 3.28.3 * Mon Apr 30 2018 Cole Robinson - 3.28.2-1.fc28.1 - Re-enable libvirt-daemon-config-network dep, see bz 1164492#c71 [ 1 ] Bug #1635839 - [abrt] vinagre: init_freerdp(): vinagre killed by SIGSEGV https://bugzilla.redhat.com/show_bug.cgi?id=1635839 [ 2 ] Bug #1655205 - [abrt] vinagre: init_freerdp(): vinagre killed by SIGSEGV https://bugzilla.redhat.com/show_bug.cgi?id=1655205 [ 3 ] Bug #1677320 - Cannot connect to xrdp server https://bugzilla.redhat.com/show_bug.cgi?id=1677320 [ 4 ] Bug #1684154 - CVE-2018-8786 freerdp: Integer truncation leading to heap-based buffer overflow in update_read_bitmap_update() function [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1684154 [ 5 ] Bug #1661642 - CVE-2018-1000852 freerdp: out of bounds read in drdynvc_process_capability_request [fedora-28] https://bugzilla.redhat.com/show_bug.cgi?id=1661642 [ 6 ] Bug #1665682 - [abrt] remmina: poll_for_event(): remmina killed by SIGABRT https://bugzilla.redhat.com/show_bug.cgi?id=1665682 [ 7 ] Bug #1660515 - Remmina NX plugin no longer works https://bugzilla.redhat.com/show_bug.cgi?id=1660515 [ 8 ] Bug #1667632 - remmina-1.3.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=1667632 su -c 'dnf upgrade --advisory FEDORA-2019-b2d986c3e9' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ package-announce mailing list -- package-announce@lists.fedoraproject.org To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org Fedora Code of Conduct: List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Severity
Product : Fedora 28
Version : 3.28.5
Release : 2.fc28
URL : https://wiki.gnome.org/Apps/Boxes
Summary : A simple GNOME 3 application to access remote or virtual systems

Related News