USN-1128-1: Vino vulnerabilities
2 May 2011
An attacker could send crafted input to Vino and cause it to crash.
Releases
Packages
- vino - VNC server for GNOME
Details
Kevin Chen discovered that Vino incorrectly handled certain client
framebuffer requests. A remote attacker could use this flaw to cause Vino
to crash, leading to a denial of service.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 8.04
Ubuntu 11.04
Ubuntu 10.10
Ubuntu 10.04
After a standard system update you need to restart your session to make
all the necessary changes.