UbuntuUpdates.org

Package "vino"

Name: vino

Description:

VNC server for GNOME

Latest version: 3.4.2-0ubuntu1.3
Release: precise (12.04)
Level: security
Repository: main
Homepage: http://live.gnome.org/Vino

Links


Download "vino"


Other versions of "vino" in Precise

Repository Area Version
base main 3.4.1-0ubuntu1
updates main 3.4.2-0ubuntu1.3.1

Changelog

Version: 3.4.2-0ubuntu1.3 2013-09-30 18:07:05 UTC

  vino (3.4.2-0ubuntu1.3) precise-security; urgency=low

  * SECURITY UPDATE: denial of service via malformed data
    - debian/patches/CVE-2013-5745.patch: close clients in a deferred state
      in server/libvncserver/rfbserver.c.
    - CVE-2013-5745
 -- Marc Deslauriers <email address hidden> Thu, 26 Sep 2013 22:41:07 -0400

Source diff to previous version
CVE-2013-5745 Persistent DoS Vulnerability in Vino VNC Server

Version: 3.4.2-0ubuntu1.2 2013-01-22 14:06:43 UTC

  vino (3.4.2-0ubuntu1.2) precise-security; urgency=low

  * SECURITY UPDATE: clipboard leak to unauthenticated clients
    - debian/patches/CVE-2012-4429.patch: make sure client is authenticated
      in server/libvncserver/rfbserver.c.
    - CVE-2012-4429
 -- Marc Deslauriers <email address hidden> Fri, 18 Jan 2013 11:26:51 -0500

CVE-2012-4429 Vino 2.28, 2.32, 3.4.2, and earlier allows remote attackers to read clipboard activity by listening on TCP port 5900.



About   -   Send Feedback to @ubuntu_updates