Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Mageia: 2020-0243 Critical: gnome-shell Denial Of Service

mageia
Calendar Grey June 10, 2020
Dist Mageia Esm H88
Mageia 2021-0387 introduces crucial enhancements for ssh packages, protecting against possible vulnerabilities and operational challenges.
Updated vino packages fix security vulnerabilities: The rfbProcessClientNormalMessage function in libvncserver/rfbserver.c in LibVNCServer did not properly handle attempts to send...

Summary

Updated vino packages fix security vulnerabilities:
The rfbProcessClientNormalMessage function in libvncserver/rfbserver.c in LibVNCServer did not properly handle attempts to send a large amount of ClientCutText data, which allowed remote attackers to cause a denial of service (memory consumption or daemon crash) via a crafted message that was processed by using a single unchecked malloc (CVE-2014-6053).
An issue was discovered in LibVNCServer. rfbProcessClientNormalMessage() in rfbserver.c did not sanitize msg.cct.length, leading to access to uninitialized and potentially sensitive data or possibly unspecified other impact (e.g., an integer overflow) via specially crafted VNC packets (CVE-2018-7225).
LibVNC contained a memory leak in VNC server code, which allowed an attacker to read stack memory and could be abused for information disclosure. Combined with another vulnerability, it could be used to leak stack memory and bypass ASLR. This attack appeared to be exploitable via netwo...

Read the Full Advisory

References

- https://bugs.mageia.org/show_bug.cgi?id=25786

- https://lists.debian.org/debian-lts-announce/2019/11/msg00032.html

- https://www.cve.org/CVERecord?id=CVE-2014-6053

- https://www.cve.org/CVERecord?id=CVE-2018-7225

- https://www.cve.org/CVERecord?id=CVE-2019-15681

Resolution

SRPMS

- 7/core/vino-3.22.0-3.1.mga7

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 10 Jun 2020
URL: https://advisories.mageia.org/MGASA-2020-0242.html
Type: security
CVE: CVE-2014-6053, CVE-2018-7225, CVE-2019-15681

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here