File _patchinfo of Package patchinfo.4050

<patchinfo incident="4050">
  <issue id="1019274" tracker="bnc">VUL-1: vncviewer: Malicious LibVNCServer program causes vncviewer crash</issue>
  <issue id="1023012" tracker="bnc">VUL-0: tigervnc: vncserver vulnerable by remote attackers</issue>
  <issue id="2016-10207" tracker="cve"></issue>
  <issue id="2016-9941" tracker="cve"></issue>
  <issue id="2016-9942" tracker="cve"></issue>
  <category>security</category>
  <rating>moderate</rating>
  <packager>michalsrb</packager>
  <description>
This update for tigervnc provides the following fixes:

- Prevent malicious server from crashing a server via a buffer overflow, a similar flaw as the LibVNCServer issues CVE-2016-9941 and CVE-2016-9942.. (bsc#1019274)
- CVE-2016-10207: Prevent potential crash due to insufficient clean-up after failure to establish TLS
  connection. (bsc#1023012)
</description>
  <summary>Security update for tigervnc</summary>
</patchinfo>
openSUSE Build Service is sponsored by