This is a security release to address various buffer overflow and overrun issues in the rdesktop protocol handling identified by Kaspersky Lab and National Cyber Security Centre. rdesktop will now detect any attempts to access invalid areas and refuse . MGASA-2019-0209 - Updated rdesktop packages fix security issues Publication date: 21 Jul 2019 URL: https://advisories.mageia.org/MGASA-2019-0209.html Type: security Affected Mageia releases: 6 This is a security release to address various buffer overflow and overrun issues in the rdesktop protocol handling identified by Kaspersky Lab and National Cyber Security Centre. rdesktop will now detect any attempts to access invalid areas and refuse to continue. References: - https://bugs.mageia.org/show_bug.cgi?id=24797 - https://github.com/rdesktop/rdesktop/releases/tag/v1.8.5 SRPMS: - 6/core/rdesktop-1.8.5-1.mga6 . The update MGASA-2021-0412 from Mageia tackles critical vulnerabilities in gedit, improving protection against unauthorized data manipulations.. rdesktop Security Update,Mageia Security Advisory,Buffer Overflow Fix,rdesktop Protocol Issues,Mageia Releases. . LinuxSecurity.com Team
Moderate: spice-server security update. Date: Mon, 6 Feb 2017 16:40:19 -0000 Reply-To: scientific-linux-users@ Sender: Security Errata for Scientific Linux From: Pat Riehecky Subject: Security ERRATA Moderate: spice-server on SL6.x x86_64 MIME-Version: 1.0 Message-ID: Synopsis: Moderate: spice-server security update Advisory ID: SLSA-2017:0253-1 Issue Date: 2017-02-05 CVE Numbers: CVE-2016-9578 CVE-2016-9577 -- Security Fix(es): * A vulnerability was discovered in spice in the server's protocol handling. An authenticated attacker could send crafted messages to the spice server causing a heap overflow leading to a crash or possible code execution. (CVE-2016-9577) * A vulnerability was discovered in spice in the server's protocol handling. An attacker able to connect to the spice server could send crafted messages which would cause the process to crash. (CVE-2016-9578) -- SL6 x86_64 spice-server-0.12.4-13.el6_8.2.x86_64.rpm spice-server-debuginfo-0.12.4-13.el6_8.2.x86_64.rpm spice-server-devel-0.12.4-13.el6_8.2.x86_64.rpm - Scientific Linux Development Team . Essential security enhancement for spice-server on Scientific Linux tackling serious vulnerabilities and rectifying bugs.. Scientific Linux, Spice Server, Security Update. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.