RHSA-2015:1713High
Red Hat Security Advisory: rhev-hypervisor security, bug fix, and enhancement update
🔗 CVE IDs covered (4)
📋 Description
CVE-2014-8137 — jasper: double-free in in jas_iccattrval_destroy() (oCERT-2014-012) CVE-2014-8138 — jasper: heap overflow in jp2_decode() (oCERT-2014-012) CVE-2015-1841 — RHEV-M: webadmin automatic logout fails if VM is selected CVE-2015-3247 — spice: memory corruption in worker_update_monitors_config()
🔗 References (12)
- selfhttps://access.redhat.com/errata/RHSA-2015:1713
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1173157
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1173162
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1174708
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1206332
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1225224
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1231027
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1233145
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1233238
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1248942
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2015/rhsa-2015_1713.json