libspice-server-devel-0.14.3-150300.3.3.1 >  A bbp9| rjE̹/ LP@!Vs>$ws2&a جn<`8(["iEfT6Hk$D@A!j\R--L^pFex8BO6WZpjI SR?uQkj崁6~4&˖Mݖ49NUP}YaSu ?Cͯ'_]S| yU[kɲ[WTy g@Q19c5c9d3293b9c6455972b5cde6518a16d83638f6078a3cfe7139cb32681bc994516417c0c113f18858d411da7375084df7c9ff3_bbp9|:g^Pګ~wն%XSwwB7 A_8)vhc:SrH?xdg̽r "R!#tI{Vg$kai6N* Mp<1P6L|r*5ofAVK2.9!9iWuKCB335Io<=[K?;4ӍMv~~%owxY!NWg&=h`/ %<>p>??>d , XD Zz       @    4 h   @   ((809: F:]G:t H: I: X:Y:\;( ];\ ^<b x>@ y>t z>>>>>Clibspice-server-devel0.14.3150300.3.3.1Development files for building SPICE-serverDevelopment files for building SPICE-server. The SPICE server is used to expose a remote machine's display and devices.bXs390zl38SUSE Linux Enterprise 15SUSE LLC LGPL-2.1-or-later OR GPL-2.0-or-laterhttps://www.suse.com/Development/Languages/C and C++https://www.spice-space.org/linuxs390x1 ? ,t)A큤bWbWbWbWbWbWbWbWbWbWbWbWbW97e621b081a723ead519f3de826cbe42b8a8f498b1f072978f0e7629adbe4a95909fcd2c3fdbbdd2565b870cd89ba0fca530defb967ea83262c4ae09ec3309a67e6c740959182edef3746f72280c2060b11b50eec61e7d0b2690642778c1dc9af190da5b17d361a92379f920301c8dc332714801b4150ebab59e6419426d3aeb7b4c8c56178b65749536bc36208c147a33c25a39f64d52164820e6c81908c0a7b4ab18c3547d1fa37eebc4c02baf84924f43d2d16bd6bddc8b2f468c07b278baf83376722a2b3890edc0b007641057ba34e9f4188772c262e784901477ef094c29a030049211b1b6770c90513b5760ba8722da47cb2c0ea370c84ea00d6bcd4000681ed24cbd2e2d414b619235facaff983356c7a905fb63ff453025debe7a8aa106e2df58f2adfddc3c65a826adde511f3cb16df6359cf9b6aa772d127d76971da9e2b6daba5ffa68c542b81f354d94517cfb76e15312d57c7ed560175b2901libspice-server.so.1.14.0rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootspice-0.14.3-150300.3.3.1.src.rpmlibspice-server-devellibspice-server-devel(s390-64)pkgconfig(spice-server)@@ @ @ @ @@ @     /usr/bin/pkg-configlibspice-server1pkgconfig(gio-2.0)pkgconfig(glib-2.0)pkgconfig(gobject-2.0)pkgconfig(libcacard)pkgconfig(openssl)pkgconfig(pixman-1)pkgconfig(spice-protocol)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)0.14.32.382.382.382.5.10.17.70.14.03.0.4-14.6.0-14.0-15.2-14.14.3`_P_{ ^f/^Y^g@\P\y\N[:@[:@[z@[LZp^@Zp^@Z`@Y@X@X@X[@XOX$a@WWVU|@Uq@TBV@T>acarnold@suse.combrogers@suse.combrogers@suse.combrogers@suse.combrogers@suse.com9+suse@cirno.systemsbrogers@suse.comolaf@aepfle.debrogers@suse.comastieger@suse.combrogers@suse.comcbosdonnat@suse.comcbosdonnat@suse.comjengelh@inai.detchvatal@suse.comtchvatal@suse.comcbosdonnat@suse.compsimons@suse.comcbosdonnat@suse.comastieger@suse.comcbosdonnat@suse.commsuchanek@suse.comzaitor@opensuse.orgcbosdonnat@suse.comcbosdonnat@suse.comcbosdonnat@suse.comcbosdonnat@suse.comcrrodriguez@opensuse.orgzaitor@opensuse.org- bsc#1181686 - VUL-0: CVE-2021-20201: spice,spice-gtk: client initiated renegotiation denial of service 0001-With-OpenSSL-1.1-Disable-client-initiated-renegotiation.patch 0002-With-OpenSSL-1.0.2-and-earlier-disable-client-side-renegotiation.patch- Note: The Mar 9, 2020 spec file cleanup and the following change satisfy jsc#SLE-15520 - Remove gstreamer-plugins-libav and gstreamer-plugins-good as BuildRequires. Even though the configure step of the package build does report detection of features from these packages, the build is actually not otherwise influenced by the presence of these packages. It is at runtime when these plugin packages are utilized, so leave the Recommends for these in the package spec, so that if the packages are available in a distro they can get installed and utilized.- Fix buffer overflow vunerabilities in QUIC image decoding (CVE-2020-14355 bsc#1177158) 0001-quic-Check-we-have-some-data-to-start-decoding-quic-.patch 0002-quic-Check-image-size-in-quic_decode_begin.patch 0003-quic-Check-RLE-lengths.patch 0004-quic-Avoid-possible-buffer-overflow-in-find_bucket.patch- Clean up some spec file conditionals that are no longer helpful- Update to v0.14.3 release The main changes are WebSocket and support for Windows. * Add support for WebSocket, this will allow to use spice-html5 without proxy * Support Windows, now Qemu Windows can be build enabling Spice * Fix some alignment problem * Converted some documentation to Asciidoc format to make easier to update, updated some * Minor compatibility fix for PPC64EL and ARMHF * Minor fixes for big endian machines like MIPS * Avoid some crashes with some buggy guest drivers, simply ignore the invalid request * Fix for old OpenSSL versions * Minor fix for Windows clients and brushes, fixed an issue with Photoshop under Windows 7 * Add ability to query video-codecs * Small use-after-free fix * Fix for debugging recording/replaying using QUIC images * Fix a regression where spice reported no monitors to the client * Fix DoS in spicevmc if WebDAV used * Updated and improved test migration script * Some minor fixes to smartcard support * Avoid possible disconnection using proxies using a in-flow keepalive mechanism - The NEWS file is now named CHANGELOG.md, and the previously provided ChangeLog, which was a summary of the git log is no longer provided- Enable video codec support (VPX and MJPEG)- Update to v0.14.2 stable release The main changes are support for Meson build and graphic device info messages allowing to better support multi-monitor configurations. * support H265 in stream-channel * add support for building with meson/ninja * minor tests fixes improving CI * set char device state for smartcard, allowing Qemu optimization * improve red-parse-qxl.c interface making it more consistent * add some instrumentation for streaming device * QXL interface: add a function to identify monitors in the guest (spice_qxl_set_device_info) * add support for GraphicsDeviceInfo messages * video-stream: prevent crash on stream reattach * make channel client callbacks virtual functions * bumped minimum required glib version to 2.38 * attempt to have a reliable led state for keyboard modifiers - Removed patches: (The first two are altered versions of what is carried upstream. I think we're fine with what upstream does here) 0001-lz-Avoid-buffer-reading-overflow-checking-for-image-.patch 0002-lz-More-checks-on-image-sizes.patch 0001-memslot-Fix-off-by-one-error-in-group-slot-boundary-.patch- Use plain python2 for SLE12 builds - Remove PYTHON=python3, configure will find and use the python3- Fix OOB memory access in internal tracking of slot_ids and group_ids. (CVE-2019-3813 bsc#1122706) * 0001-memslot-Fix-off-by-one-error-in-group-slot-boundary-.patch - Remove celt051 Requires directive- Upstream disabled support for the celt051 audio codec by default, do likewise in the spec - Note updated 0.14.1 build dependencies in the spec: * OpenSSL 1.0.0 or newer is now required * glib 2.32 required - add upstream signing key and verify source signature- Update to v0.14.1 stable release The announcement email describes this release as follows: The main change in this release is the addition of a new protocol extension in order to support streaming the remote display as a video stream rather than going through the QXL protocol. Together with spice-streaming-agent, and/or with more work on the qemu/ spice-server side, this should allow streaming of 3D accelerated VMs in the future. At this point, this part of spice-server is still a work in progress (multi-monitor support and various features are missing). * avoid performance issues on Windows 10 KVM guests (boo#1109044) * add new org.spice-space.stream.0 channel used for passing an encoded video stream from the guest to the client * add support for TCP_CORK to reduce the amount of packets that we send * fix CVE-2018-10873 (maintainer note: we already carried fix) * fix cursor related migration crash * fix regression causing sound recording to be muted after client disconnection/reconnection (introduced in 0.13.90) * fix regression in corner cases where images could be sent uncompressed when they used to be compressed with QUIC * disable TLS 1.0 support * CELT 0.5.1 support is now disabled by default. If celt051-devel is installed at build-time, --enable-celt051/--disable-celt051 must be explicitly specified * drop support for unsupported OpenSSL version. OpenSSL 1.0.0 or newer is now required * bumped minimum required glib version to 2.32 * endianness fixes * (small) leak fixes * usual round of code cleanups * not directly related to this release, but the upstream git repository is now hosted on gitlab.freedesktop.org - Removed patches: bb15d481-Fix-flexible-array-buffer-overflow.patch- Fix potential heap corruption when demarshalling (CVE-2018-10873, bsc#1104448) Added patch: bb15d481-Fix-flexible-array-buffer-overflow.patch- Avoid buffer overflow on image lz cheks (CVE-2018-10893, bsc#1101295) Added patches: 0001-lz-Avoid-buffer-reading-overflow-checking-for-image-.patch 0002-lz-More-checks-on-image-sizes.patch- Correct RPM group for shared library.- Split the sle condition again for exact features to allow their override- Enable smartcards on sle15 as the supportlib is available * Condition it using name everywhere instead of suse versions and join together with lz4 - Format with spec-cleaner - Convert dependencies to pkgconfig style - Install documentation and license file - Add configure arguments to most of the options to not rely on autotools automatic behavior * Also enable gstreamer and lz4 options - Drop the not needed python dependencies, they are needed only when building from git snapshot- Release 0.14.0 * fix client mouse with virgl * fix frozen display after seamless migration * set human-readable name on spice threads * add sanity-checks for ORC library as it can abort spice-server when selinux is in use * Close TCP connection early when client did not send the correct SPICE magic bytes: this allows VNC clients to gracefully fail when connecting to a SPICE port * Add VP9 encoding support when GStreamer is being used and misc streaming/encoding improvements * Improvements to replay utility * Limit (deprecated/unusud) QXLMessage size to 100,000 characters for improved safety * Improve image quality in low bitrate situation when using the GStreamer backend * Added GStreamer support to the video streaming code * Fix old migration bug causing migration to never end in some cases * Added lz4 compression to the spicevmc channel * Ongoing code cleanups * add spice_qxl_gl_scanout() spice_qxl_gl_draw_async() for local virgl support * spice_server_set_keepalive_timeout() has been removed in favour of unconditionally sending keepalive probes every 10 minutes * Added public spice_server_set_keepalive_timeout() to make it possible to tweak keepalive on all SPICE connection. This can prevent unwanted idle disconnections if proxies are used between the client and the host. * Fix important memory usage when the webdav channel is used * Do not disconnect when the client requests an unsupported compression type * Fix potential race condition when using multiple QXL devices * Fix display glitch when using XSpice * Improve help string for 'replay -s' * Fix small leak in MJPEG code - Removed patches: * CVE-2016-9577-buffer-overflow-in-main_channel_alloc_msg_rcv_buf.patch * CVE-2016-9578-remote-dos-via-crafted-message.patch- Added patches to fix two security vulnerabilities. * CVE-2016-9577-buffer-overflow-in-main_channel_alloc_msg_rcv_buf.patch [CVE-2016-9577, bsc#1023078] * CVE-2016-9578-remote-dos-via-crafted-message.patch [CVE-2016-9578, bsc#1023079]- Synchronize with SLES (fate#322402): + bnc#894069: disable smartcard support for SLES + merge changelog- restrict suppression of obsoletes-not-provided warning to spice-client bsc#1013916- Obsolete spice-client (bsc#1013916)- remove ExclusiveArch (boo#1009438)- Update to version 0.12.8: + Fixes for bsc#982385 / CVE-2016-0749 and bsc#982386 / CVE-2016-2150.- Update to version 0.12.7 (fate#320079) + spice-server will now send TCP keepalive probes on the TCP connections it uses. This can prevent unwanted idle disconnections if proxies are used between the client and the host. + Fix important memory usage when the webdav channel is used + Do not disconnect when the client requests an unsupported compression type + Fix a few race conditions + Fix display glitch when using XSpice + Improve help string for 'replay -s' + Fix crashes in corner cases (buggy spice-html5 + win10, vnc + SPICE port configured, USB webcam redirection over a slow link) + Fix various compilation warning when building on 32 bit machines + Some fixes for big-endian machines, more work is likely to be needed + Do not build static libraries by default, this can be reenabled with --enable-static + Fix small leak in MJPEG code- Update to version 0.12.6 + Removed spicec client code, it has been superseded by remote-viewer and other spice-gtk based clients + Unix socket support + LZ4 support + Let clients specify their preferred image compression format + Allow to record and replay a spice-server session + Fixes for CVE-2015-3247 CVE-2015-5260 and CVE-2015-5261 bsc#944787, bsc#948976 + spice-protocol submodule has been removed, spice-protocol must now be installed when building spice-server + Remove write polling in chardevs to reduce wakeups - Remove upstream merged patches: + spice-Don-t-use-48kHz-for-playback-recording-rates.patch + password-length-check.patch + cve-2015-3247.patch- bsc#944460: fix CVE-2015-3247. cve-2015-3247.patch- Don't allow setting password longer than what the spice protocol allows. password-length-check.patch. boo#931044- Replace xorg-x11-devel buildrequire by selected pkgconfig(xlibs..)- Update to version 0.12.5: + Added Opus support. Celt support will be obsoleted in a future release. + Addition of webdav channel. + Force use of TLS 1.0 or newer for TLS connections. + Reference manual. + Some optimizations improving CPU use. + Various bug fixes for race conditions, memory corruption, which could be triggered on client disconnections, migration, and cause spice-server to misbehave. + Portability fixes. + Code cleanups. + bsc#848279: fix CVE-2013-4282. - Add pkconfig(opus) BuildRequires: Needed to build new opus support. - Add spice-Don-t-use-48kHz-for-playback-recording-rates.patch: Fix advertised sound playback/recording rates in public headers (rh#1129961). - Drop spice-glibc217.patch: No longer needed. - Run spec-clean on spec file, remove conditionals for obsolete versions of openSUSE, enable parallel build and drop obsolete clean section.s390zl38 1660808536 0.14.3-150300.3.3.10.14.3-150300.3.3.10.14.3spice-serverspice-audio.hspice-char.hspice-core.hspice-input.hspice-migration.hspice-qxl.hspice-replay.hspice-server.hspice-version.hspice.hlibspice-server.sospice-server.pc/usr/include//usr/include/spice-server//usr/lib64//usr/lib64/pkgconfig/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:25522/SUSE_SLE-15-SP3_Update/e286794a742c3ff573031286cf03db5e-spice.SUSE_SLE-15-SP3_Updatecpioxz5s390x-suse-linuxdirectoryC source, ASCII textpkgconfig file PRRRRRRRRc%է9P!"-Ѹutf-8f626f455679e4469c7a48379bc69c1415d66ec578bd632171ad693700e6d11c4? 7zXZ !t/;9] crt:bLL G$Qj 2 BIc"bDvt0K$e21zН쓨rXk#5u o~)\lt ˑ?9,0\ISCwNy G寱ij)ڰVZATk^eDlfz~37^fAɖ6 jQUa!zټE#{TKs֤|(Il 쬄@\. %0H%%h6g/X)L R@:͋Rdz}_g9 ʹ^ l %`S>GBkX Ot68TvCO@ɋBy14gԄضcf#%]d;7+ }CqP#|`6c>.lJWLĝBF;1z1,5a,067R;w$99ҒDžQ6 F.ASvBy@ۡGđݕ vweSI}%3J|7ñw-1/7v]> ̼E{:BXAEfq5| /+!Fx!!ɌIjcMR9w}0yM?I$԰]fr;WdJܒXo!z\8\Οcq[Bwyc1T,naטOYv)&ye%^%Y?d{L5sABHҪ~ҐI j+ԗ2 n߾t ٜTINKޯK7yc32r-b}˕Tdbj,W}ιXt_?Oڬ'63g, /Fmb3#Zs|0?KWz +JHDftKWrJ{}o>a|ϚUt2J#QVoiG\sפ5c)J.Lތq5?a,I{ot8pCp!M'y Yn^. aٯFR Z'e+ 3lklgU<_~񏊶fu}>ֳ=F`ӥNG2 \M8,y~9 yPG 6m=n!O)QPi5NA'IPuEPi3jrv?_0憾2ښ2LBz"R~iX)fioW4ʳjgb+rVK>7Rj>}uoK҉ հ:?mlDgp`%4KLfV(X']>AƘӺbBC@eAs`(f͎n:֞†{l^hYn5U_Owa !#H"Aނ O7YJ߀|i>Ygrb):HgVys;9 6AR ZzsdM -1c3jN 4_CC!O'bs}>npm9V66ȐSQɽN=;Ǵ=dJKdqtCDx|#iɰL .sګIs~SBŘA/jAT,ZlEuQxQ{\J?lV [[ wHM/ @2"CZ?GEWm>PXE~ҋ5?y@xqN2wU yJ ^Di}.(pU_/c 6l-Z3w-dV6'|.r6f.sijD&kAzGF?D)եW65D| g 票  Mno>,nXRۋ'TI`^c/plK00oѶhړ =l,_6c뙦Ih^2o "\p!5ޅx c2嚁HAьzu[s +p՜l ئ!B v2Ő6Pd;0xOC/O>մyc"I(OVwJvɨaVǧ| YZ0/$q25o6V'uR*q.>S航t~b$#XmTeٌd1>R YXlD,`DۀsZy@y+דΚ@o-ݵWaw5g[w=K蜌DWv]Ȧ ܢڤ0P6˳2m{(VSAz"rG_u Ϻ^ Y!ϷjKg,%x#*ܼ{чXKro0ܧ܂T`RkZ1$;Tk1iu蚚;q#y0xɁ`h@u& RP/Ic0S8XF(GSbw緯l{[&&Mߍgg}% @NV?"eH}P96 OwZOl g KG)ǯ-a!1`!<8̄_a naIW(!ȟ*Vw4 4UcGϣ?#\ P^fV5rXÔm+,3-/u|﫚aIC~bǘx=5Ps'H^3A?\'qick_ 92dY~J@E|wk^]+W ׍N ֱEn{)~0X)z z3ؒcЇ[uuLz`Yy9Gw,Y]#x-wB\X"`" %6WLȋ'dw-q?>5DZigLtQA\ ߤ?uW%otGic#8;r 2C,\զEۺ( %f~ .,|VF1mĹZsr!fqf*21K&Ojc']\ +[܄? 5܆QKj|{ƎQeg8=xr#Rг%% 4C(14apĿАx`M׊#q|[;#DVƠ51 RHlC9ee=VɞM gMbtw^jT7kH/SJK-XU%PWyYˈ<sHVk>V86 ES$UN+; c;i# ΒP3{~w!?lh^ R h9u;@ݗcT:-Mt*?PoZCҡT)zۮl=igt`HXХ0x.Z N%IZ|Pǃ.atvBq jN ~5}/(¸,Y334rD܇0Pڔ ו-`TN+UO3$$ G({P;kyᙵy.Pmh/XZ_6C%,ܢד:]Kp\E䦟T_X )G­ø {oа&<儼ҺL^X^)1F6=Lwji$EaG3_Jq;bRsڣ|-xÅ@hv9Hv@e-*kXVh|J7B?e,{>BW :>v6Qz.^69w"e!TԒCHI W .a3y<*PELg7t- |;~ ' 5:(|؅ttzZN:xDC8>\ YZ