Scientific Linux alert SLSA-2019:2157-1 (freerdp and vinagre)
From: | Farhan Ahmed <fahmed@fnal.gov> | |
To: | scientific-linux-errata@listserv.fnal.gov | |
Subject: | Security ERRATA Low: freerdp and vinagre on SL7.x x86_64 | |
Date: | Mon, 26 Aug 2019 18:58:06 -0000 | |
Message-ID: | <20190826185806.532.25076@slpackages.fnal.gov> |
Synopsis: Low: freerdp and vinagre security, bug fix, and enhancement update Advisory ID: SLSA-2019:2157-1 Issue Date: 2019-08-06 CVE Numbers: CVE-2018-1000852 -- The vinagre packages provide the Vinagre remote desktop viewer for the GNOME desktop. The following packages have been upgraded to a later upstream version: freerdp (2.0.0). Security Fix(es): * freerdp: out of bounds read in drdynvc_process_capability_request (CVE-2018-1000852) -- SL7 x86_64 vinagre-3.22.0-12.el7.i686.rpm freerdp-libs-2.0.0-1.rc4.el7.x86_64.rpm libwinpr-2.0.0-1.rc4.el7.x86_64.rpm vinagre-3.22.0-12.el7.x86_64.rpm freerdp-2.0.0-1.rc4.el7.x86_64.rpm libwinpr-2.0.0-1.rc4.el7.i686.rpm freerdp-libs-2.0.0-1.rc4.el7.i686.rpm libwinpr-devel-2.0.0-1.rc4.el7.x86_64.rpm libwinpr-devel-2.0.0-1.rc4.el7.i686.rpm freerdp-devel-2.0.0-1.rc4.el7.x86_64.rpm freerdp-devel-2.0.0-1.rc4.el7.i686.rpm freerdp-debuginfo-2.0.0-1.rc4.el7.i686.rpm freerdp-debuginfo-2.0.0-1.rc4.el7.x86_64.rpm vinagre-debuginfo-3.22.0-12.el7.i686.rpm vinagre-debuginfo-3.22.0-12.el7.x86_64.rpm - Scientific Linux Development Team