SUSE Security Update: Security update for vino
______________________________________________________________________________

Announcement ID:    SUSE-SU-2013:1631-2
Rating:             important
References:         #843174 
Cross-References:   CVE-2013-5745
Affected Products:
                    SUSE Linux Enterprise Server 11 SP3 for VMware
                    SUSE Linux Enterprise Server 11 SP3
                    SUSE Linux Enterprise Desktop 11 SP3
______________________________________________________________________________

   An update that fixes one vulnerability is now available.

Description:


   vino has been updated to fix a remote denial of service
   problem where  remote attackers could have caused a
   infinite loop in vino (CPU  consumption). (CVE-2013-5745)

   Security Issue reference:

   * CVE-2013-5745
   


Patch Instructions:

   To install this SUSE Security Update use YaST online_update.
   Alternatively you can run the command listed for your product:

   - SUSE Linux Enterprise Server 11 SP3 for VMware:

      zypper in -t patch slessp3-vino-8443

   - SUSE Linux Enterprise Server 11 SP3:

      zypper in -t patch slessp3-vino-8443

   - SUSE Linux Enterprise Desktop 11 SP3:

      zypper in -t patch sledsp3-vino-8443

   To bring your system up-to-date, use "zypper patch".


Package List:

   - SUSE Linux Enterprise Server 11 SP3 for VMware (i586 x86_64):

      vino-2.28.1-2.5.1
      vino-lang-2.28.1-2.5.1

   - SUSE Linux Enterprise Server 11 SP3 (i586 ia64 ppc64 s390x x86_64):

      vino-2.28.1-2.5.1
      vino-lang-2.28.1-2.5.1

   - SUSE Linux Enterprise Desktop 11 SP3 (i586 x86_64):

      vino-2.28.1-2.5.1
      vino-lang-2.28.1-2.5.1


References:

   https://www.suse.com/security/cve/CVE-2013-5745.html
   https://bugzilla.novell.com/843174
   https://login.microfocus.com/nidp/app/login

SuSE: 2013:1631-2: important: vino

November 6, 2013
An update that fixes one vulnerability is now available

Summary

vino has been updated to fix a remote denial of service problem where remote attackers could have caused a infinite loop in vino (CPU consumption). (CVE-2013-5745) Security Issue reference: * CVE-2013-5745 Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server 11 SP3 for VMware: zypper in -t patch slessp3-vino-8443 - SUSE Linux Enterprise Server 11 SP3: zypper in -t patch slessp3-vino-8443 - SUSE Linux Enterprise Desktop 11 SP3: zypper in -t patch sledsp3-vino-8443 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Linux Enterprise Server 11 SP3 for VMware (i586 x86_64): vino-2.28.1-2.5.1 vino-lang-2.28.1-2.5.1 - SUSE Linux Enterprise Server 11 SP3 (i586 ia64 ppc64 s390x x86_64): vino-2.28.1-2.5.1 vino-lang-2.28.1-2.5.1 - SUSE Linux...

Read the Full Advisory

References

#843174

Cross- CVE-2013-5745

Affected Products:

SUSE Linux Enterprise Server 11 SP3 for VMware

SUSE Linux Enterprise Server 11 SP3

SUSE Linux Enterprise Desktop 11 SP3

https://www.suse.com/security/cve/CVE-2013-5745.html

https://bugzilla.novell.com/843174

https://login.microfocus.com/nidp/app/login

Severity
Announcement ID: SUSE-SU-2013:1631-2
Rating: important

Related News