Linux Security
    Linux Security
    Linux Security

    openSUSE: 2020:1439-1: moderate: mumble

    Posted By
    An update that contains security fixes can now be installed.
       openSUSE Security Update: Security update for mumble
    Announcement ID:    openSUSE-SU-2020:1439-1
    Rating:             moderate
    References:         #1174041 
    Affected Products:
                        openSUSE Backports SLE-15-SP1
       An update that contains security fixes can now be installed.
       This update for mumble fixes the following issues:
       mumble was updated 1.3.2:
       * client: Fixed overlay not starting
       Update to upstream version 1.3.1
       - Security
         * Fixed: Potential exploit in the OCB2 encryption (#4227) boo#1174041
       - ICE
         * Fixed: Added missing UserKDFIterations field to UserInfo => Prevents
           getRegistration() from failing with enumerator
           out of range error (#3835)
       - GRPC
         * Fixed: Segmentation fault during murmur shutdown (#3938)
       - Client
         * Fixed: Crash when using multiple monitors (#3756)
         * Fixed: Don't send empty message from clipboard via shortcut, if
           clipboard is empty (#3864)
         * Fixed: Talking indicator being able to freeze to indicate talking when
           self-muted (#4006)
         * Fixed: High CPU usage for update-check if update server not available
         * Fixed: DBus getCurrentUrl returning empty string when not in
           root-channel (#4029)
         * Fixed: Small parts of whispering leaking out (#4051)
         * Fixed: Last audio frame of normal talking is sent to last whisper
           target (#4050)
         * Fixed: LAN-icon not found in ConnectDialog (#4058)
         * Improved: Set maximal vertical size for User Volume Adjustment dialog
         * Improved: Don't send empty data to PulseAudio (#3316)
         * Improved: Use the SRV resolved port for UDP connections (#3820)
         * Improved: Manual Plugin UI (#3919)
         * Improved: Don't start Jack server by default (#3990)
         * Improved: Overlay doesn't hook into all other processes by default
         * Improved: Wait longer before disconnecting from a server due to
           unanswered Ping-messages (#4123)
       - Server
         * Fixed: Possibility to circumvent max user-count in channel (#3880)
         * Fixed: Rate-limit implementation susceptible to time-underflow (#4004)
         * Fixed: OpenSSL error 140E0197 with Qt >= 5.12.2 (#4032)
         * Fixed: VersionCheck for SQL for when to use the WAL feature (#4163)
         * Fixed: Wrong database encoding that could lead to server-crash (#4220)
         * Fixed: DB crash due to primary key violation (now performs "UPSERT" to
           avoid this) (#4105)
         * Improved: The fields in the Version ProtoBuf message are now
           size-restricted (#4101)
       - use the "profile profilename /path/to/binary" syntax to make "ps aufxZ"
         more readable
       This update was imported from the openSUSE:Leap:15.1:Update update project.
    Patch Instructions:
       To install this openSUSE Security Update use the SUSE recommended installation methods
       like YaST online_update or "zypper patch".
       Alternatively you can run the command listed for your product:
       - openSUSE Backports SLE-15-SP1:
          zypper in -t patch openSUSE-2020-1439=1
    Package List:
       - openSUSE Backports SLE-15-SP1 (aarch64 ppc64le s390x x86_64):
       - openSUSE Backports SLE-15-SP1 (aarch64_ilp32):


    LinuxSecurity Poll

    How are you contributing to Open Source?

    No answer selected. Please try again.
    Please select either existing option or enter your own, however not both.
    Please select minimum 0 answer(s) and maximum 4 answer(s).
    [{"id":"127","title":"I'm involved with the development of an open-source project(s).","votes":"1","type":"x","order":"1","pct":100,"resources":[]},{"id":"128","title":"I've reported vulnerabilities I've discovered in open-source code.","votes":"0","type":"x","order":"2","pct":0,"resources":[]},{"id":"129","title":"I've provided developers with feedback on their projects.","votes":"0","type":"x","order":"3","pct":0,"resources":[]},{"id":"130","title":"I've helped another community member get started contributing to Open Source.","votes":"0","type":"x","order":"4","pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350


    bottom 200

    Please enable / Bitte aktiviere JavaScript!
    Veuillez activer / Por favor activa el Javascript![ ? ]

    We use cookies to provide and improve our services. By using our site, you consent to our Cookie Policy.