vnc-clipboard: fix integer underflow in vnc_client_cut_text_ext (CVE-2022-3165) (rhbz#2129759). --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-8dcdfe7297 2022-10-25 13:12:34.597429 --------------------------------------------------------------------------------Name : qemu Product : Fedora 36 Version : 6.2.0 Release : 16.fc36 URL : https://www.qemu.org/ Summary : QEMU is a FAST! processor emulator Description : qemu is an open source virtualizer that provides hardware emulation for the KVM hypervisor. qemu acts as a virtual machine monitor together with the KVM kernel modules, and emulates the hardware for a full system such as a PC and its associated peripherals. --------------------------------------------------------------------------------Update Information: vnc-clipboard: fix integer underflow in vnc_client_cut_text_ext (CVE-2022-3165) (rhbz#2129759) --------------------------------------------------------------------------------ChangeLog: * Fri Oct 14 2022 Mauro Matteo Cascella - 2:6.2.0-16 - vnc-clipboard: fix integer underflow (CVE-2022-3165) (rhbz#2129759) --------------------------------------------------------------------------------References: [ 1 ] Bug #2129759 - CVE-2022-3165 qemu: VNC: integer underflow in vnc_client_cut_text_ext leads to CPU exhaustion [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2129759 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-8dcdfe7297' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.