openSUSE Security Update : spice-vdagent (openSUSE-2020-1898)

medium Nessus Plugin ID 142915

Language:

Synopsis

The remote openSUSE host is missing a security update.

Description

This update for spice-vdagent fixes the following issues :

Security issues fixed :

- CVE-2020-25650: Fixed a memory DoS via arbitrary entries in `active_xfers` hash table (bsc#1177780).

- CVE-2020-25651: Fixed a possible file transfer DoS and information leak via `active_xfers` hash map (bsc#1177781).

- CVE-2020-25652: Fixed a possibility to exhaust file descriptors in `vdagentd` (bsc#1177782).

- CVE-2020-25653: Fixed a race condition when the UNIX domain socket peer PID retrieved via `SO_PEERCRED` (bsc#1177783).

This update was imported from the SUSE:SLE-15-SP2:Update update project.

Solution

Update the affected spice-vdagent packages.

See Also

https://bugzilla.opensuse.org/show_bug.cgi?id=1173749

https://bugzilla.opensuse.org/show_bug.cgi?id=1177780

https://bugzilla.opensuse.org/show_bug.cgi?id=1177781

https://bugzilla.opensuse.org/show_bug.cgi?id=1177782

https://bugzilla.opensuse.org/show_bug.cgi?id=1177783

Plugin Details

Severity: Medium

ID: 142915

File Name: openSUSE-2020-1898.nasl

Version: 1.5

Type: local

Agent: unix

Published: 11/17/2020

Updated: 2/8/2024

Supported Sensors: Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 6.0

CVSS v2

Risk Factor: Medium

Base Score: 5.4

Temporal Score: 4.2

Vector: CVSS2#AV:L/AC:M/Au:N/C:P/I:N/A:C

CVSS Score Source: CVE-2020-25653

CVSS v3

Risk Factor: Medium

Base Score: 6.4

Temporal Score: 5.8

Vector: CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:L

Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C

CVSS Score Source: CVE-2020-25651

Vulnerability Information

CPE: p-cpe:/a:novell:opensuse:spice-vdagent, p-cpe:/a:novell:opensuse:spice-vdagent-debuginfo, p-cpe:/a:novell:opensuse:spice-vdagent-debugsource, cpe:/o:novell:opensuse:15.2

Required KB Items: Host/local_checks_enabled, Host/SuSE/release, Host/SuSE/rpm-list, Host/cpu

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 11/11/2020

Vulnerability Publication Date: 11/25/2020

Reference Information

CVE: CVE-2020-25650, CVE-2020-25651, CVE-2020-25652, CVE-2020-25653