Advisories ยป MGASA-2020-0474

Updated spice-vdagent package fixes security vulnerabilities

Publication date: 29 Dec 2020
Type: security
Affected Mageia releases : 7
CVE: CVE-2020-25650 , CVE-2020-25651 , CVE-2020-25652 , CVE-2020-25653

Description

Matthias Gerstner discovered that SPICE vdagent incorrectly handled the
active_xfers hash table. A local attacker could possibly use this issue to
cause SPICE vdagent to consume memory, resulting in a denial of service
(CVE-2020-25650).

Matthias Gerstner discovered that SPICE vdagent incorrectly handled the
active_xfers hash table. A local attacker could possibly use this issue to
cause SPICE vdagent to consume memory, resulting in a denial of service, or
obtain sensitive file contents (CVE-2020-25651).

Matthias Gerstner discovered that SPICE vdagent incorrectly handled a large
number of client connections. A local attacker could possibly use this
issue to cause SPICE vdagent to consume resources, resulting in a denial of
service (CVE-2020-25652).

Matthias Gerstner discovered that SPICE vdagent incorrectly handled client
connections. A local attacker could possibly use this issue to obtain
sensitive information, paste clipboard contents, and transfer files into
the active session (CVE-2020-25653).
                

References

SRPMS

7/core