File _patchinfo of Package patchinfo.10131
<patchinfo incident="10131">
<issue tracker="bnc" id="1122706">VUL-0: CVE-2019-3813: spice: off-by-one error in group/slot boundary check</issue>
<issue tracker="bnc" id="1109044">spice-server package gives performance issues to Windows 10 KVM guests</issue>
<issue tracker="cve" id="2019-3813"/>
<category>security</category>
<rating>important</rating>
<packager>bfrogers</packager>
<description>This update for spice fixes the following issues:
Security issue fixed:
- CVE-2019-3813: Fixed a out-of-bounds read in the memslot_get_virt function that could lead to denial-of-service or code-execution (bsc#1122706).
Non-security issue fixed:
- Include spice-server tweak to compensate for performance issues with Windows guests (bsc#1109044).
</description>
<summary>Security update for spice</summary>
</patchinfo>