Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2020:3550-1

Опубликовано: 27 нояб. 2020
Источник: suse-cvrf

Описание

Security update for LibVNCServer

This update for LibVNCServer fixes the following issues:

  • CVE-2020-25708 [bsc#1178682], libvncserver/rfbserver.c has a divide by zero which could result in DoS

Список пакетов

HPE Helion OpenStack 8
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE Enterprise Storage 5
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE Linux Enterprise Server 12 SP2-BCL
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE Linux Enterprise Server 12 SP2-LTSS
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE Linux Enterprise Server 12 SP3-BCL
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE Linux Enterprise Server 12 SP3-LTSS
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE Linux Enterprise Server 12 SP4-LTSS
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE Linux Enterprise Server 12 SP5
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE Linux Enterprise Server for SAP Applications 12 SP2
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE Linux Enterprise Server for SAP Applications 12 SP3
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE Linux Enterprise Server for SAP Applications 12 SP4
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE Linux Enterprise Software Development Kit 12 SP5
LibVNCServer-devel-0.9.9-17.34.1
SUSE OpenStack Cloud 7
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE OpenStack Cloud 8
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE OpenStack Cloud 9
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE OpenStack Cloud Crowbar 8
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1
SUSE OpenStack Cloud Crowbar 9
libvncclient0-0.9.9-17.34.1
libvncserver0-0.9.9-17.34.1

Описание

A divide by zero issue was found to occur in libvncserver-0.9.12. A malicious client could use this flaw to send a specially crafted message that, when processed by the VNC server, would lead to a floating point exception, resulting in a denial of service.


Затронутые продукты
HPE Helion OpenStack 8:libvncclient0-0.9.9-17.34.1
HPE Helion OpenStack 8:libvncserver0-0.9.9-17.34.1
SUSE Enterprise Storage 5:libvncclient0-0.9.9-17.34.1
SUSE Enterprise Storage 5:libvncserver0-0.9.9-17.34.1

Ссылки
Уязвимость SUSE-SU-2020:3550-1