You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa spice

Sigurnosni nedostaci programskog paketa spice

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

Fedora Update Notification
2016-08-18 18:49:45.619211

Name : spice
Product : Fedora 23
Version : 0.12.8
Release : 1.fc23
Summary : Implements the SPICE protocol
Description :
The Simple Protocol for Independent Computing Environments (SPICE) is
a remote display system built for virtual environments which allows
you to view a computing ‘desktop’ environment not only on the machine
where it is running, but from anywhere on the Internet and from a wide
variety of machine architectures.

Update Information:

Update to new 0.12.8 upstream release

[ 1 ] Bug #1343135 – CVE-2016-2150 spice: Host memory access from guest with invalid primary surface parameters [fedora-all]
[ 2 ] Bug #1343137 – CVE-2016-0749 spice: heap-based memory corruption within smartcard handling [fedora-all]

This update can be installed with the “yum” update program. Use
su -c ‘yum update spice’ at the command line.
For more information, refer to “Managing Software with yum”,
available at

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
package-announce mailing list

AutorAndrej Sefic
Cert idNCERT-REF-2016-08-0132-ADV
More in Preporuke
Sigurnosni nedostatak u jezgri operacijskog sustava

Otkriven je sigurnosni nedostatak u jezgri operacijskog sustava Red Hat. Otkriveni nedostatak potencijalnim napadačima omogućuje prekid TCP konekcije ili umetanje...