aboutsummaryrefslogtreecommitdiffstats
path: root/main/spice/CVE-2017-7506.patch
Commit message (Collapse)AuthorAgeFilesLines
* main/spice: fix for CVE-2017-7506Francesco Colista2017-08-081-0/+154
There's no reference to bugs.alpinelinux.org for this alpine version (3.6). Still, it's vulnerable. Backported patches from gentoo: * https://gitweb.gentoo.org/repo/gentoo.git/tree/app-emulation/spice/files/spice-0.13.3-reds-Disconnect-when-receiving-overly-big-ClientMoni.patch * https://gitweb.gentoo.org/repo/gentoo.git/tree/app-emulation/spice/files/spice-0.13.3-reds-Avoid-integer-overflows-handling-monitor-config.patch * https://gitweb.gentoo.org/repo/gentoo.git/tree/app-emulation/spice/files/spice-0.13.3-reds-Avoid-buffer-overflows-handling-monitor-configu.patch