In Synergy before version 1.12.0, a Synergy server can be crashed by receiving a kMsgHelloBack packet with a client name length set to 0xffffffff (4294967295) if the servers memory is less than 4 GB. It was verified that this issue does not cause a crash through the exception handler if the available memory of the Server is more than 4GB (CVE-2020-15117). . MGASA-2021-0040 - Updated synergy packages fix a security vulnerability Publication date: 17 Jan 2021 URL: https://advisories.mageia.org/MGASA-2021-0040.html Type: security Affected Mageia releases: 7 CVE: CVE-2020-15117 In Synergy before version 1.12.0, a Synergy server can be crashed by receiving a kMsgHelloBack packet with a client name length set to 0xffffffff (4294967295) if the servers memory is less than 4 GB. It was verified that this issue does not cause a crash through the exception handler if the available memory of the Server is more than 4GB (CVE-2020-15117). The synergy package has been updated to version 1.12.0, fixing this issue and several other bugs. References: - https://bugs.mageia.org/show_bug.cgi?id=27851 - - - - - https://lists.fedoraproject.org/archives/list/
Upstream update to v1.12.0-stable Security fix for CVE-2020-15117. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-2ef60a0580 2020-12-17 01:23:38.024484 --------------------------------------------------------------------------------Name : synergy Product : Fedora 32 Version : 1.12.0 Release : 1.fc32 URL : https://symless.com/synergy Summary : Share mouse and keyboard between multiple computers over the network Description : Synergy lets you easily share your mouse and keyboard between multiple computers, where each computer has its own display. No special hardware is required, all you need is a local area network. Synergy is supported on Windows, Mac OS X and Linux. Redirecting the mouse and keyboard is as simple as moving the mouse off the edge of your screen. --------------------------------------------------------------------------------Update Information: Upstream update to v1.12.0-stable Security fix for CVE-2020-15117 --------------------------------------------------------------------------------ChangeLog: * Mon Dec 7 2020 David Kaufmann - 1:1.12.0-1 - Upstream update to v1.12.0-stable --------------------------------------------------------------------------------References: [ 1 ] Bug #1858254 - CVE-2020-15117 synergy: kMsgHelloBack packet with client name length of 0xffffffff causing DoS [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1858254 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-2ef60a0580' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Upstream update to v1.12.0-stable Security fix for CVE-2020-15117. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-cc19e88a1f 2020-12-16 01:40:56.936967 --------------------------------------------------------------------------------Name : synergy Product : Fedora 33 Version : 1.12.0 Release : 1.fc33 URL : https://symless.com/synergy Summary : Share mouse and keyboard between multiple computers over the network Description : Synergy lets you easily share your mouse and keyboard between multiple computers, where each computer has its own display. No special hardware is required, all you need is a local area network. Synergy is supported on Windows, Mac OS X and Linux. Redirecting the mouse and keyboard is as simple as moving the mouse off the edge of your screen. --------------------------------------------------------------------------------Update Information: Upstream update to v1.12.0-stable Security fix for CVE-2020-15117 --------------------------------------------------------------------------------ChangeLog: * Mon Dec 7 2020 David Kaufmann - 1:1.12.0-1 - Upstream update to v1.12.0-stable * Tue Sep 22 2020 Jeff Law - 1:1.11.1-4 - Use cmake_in_source_build to fix FTBFS due to recent cmake macro changes * Sat Aug 1 2020 Fedora Release Engineering - 1:1.11.1-3 - Second attempt - Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild * Wed Jul 29 2020 Fedora Release Engineering - 1:1.11.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-cc19e88a1f' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key.More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.