8738 Security update for spice-gtk important openSUSE Leap 15.0 Update This update for spice-gtk fixes the following issues: Security issues fixed: - CVE-2018-10873: Fix potential heap corruption when demarshalling (bsc#1104448) - CVE-2018-10893: Avoid buffer overflow on image lz checks (bsc#1101295) Other bugs fixed: - Add setuid bit to spice-client-glib-usb-acl-helper (bsc#1101420) This update was imported from the SUSE:SLE-15:Update update project. libspice-client-glib-2_0-8-0.34-lp150.2.3.1.x86_64.rpm libspice-client-glib-2_0-8-debuginfo-0.34-lp150.2.3.1.x86_64.rpm libspice-client-glib-helper-0.34-lp150.2.3.1.x86_64.rpm libspice-client-glib-helper-debuginfo-0.34-lp150.2.3.1.x86_64.rpm libspice-client-gtk-3_0-5-0.34-lp150.2.3.1.x86_64.rpm libspice-client-gtk-3_0-5-debuginfo-0.34-lp150.2.3.1.x86_64.rpm libspice-controller0-0.34-lp150.2.3.1.x86_64.rpm libspice-controller0-debuginfo-0.34-lp150.2.3.1.x86_64.rpm spice-gtk-0.34-lp150.2.3.1.x86_64.rpm spice-gtk-debuginfo-0.34-lp150.2.3.1.x86_64.rpm spice-gtk-debugsource-0.34-lp150.2.3.1.x86_64.rpm spice-gtk-devel-0.34-lp150.2.3.1.x86_64.rpm spice-gtk-lang-0.34-lp150.2.3.1.noarch.rpm typelib-1_0-SpiceClientGlib-2_0-0.34-lp150.2.3.1.x86_64.rpm typelib-1_0-SpiceClientGtk-3_0-0.34-lp150.2.3.1.x86_64.rpm