Search CVE reports
11 – 20 of 29 results
CVE-2018-10893
Medium priorityMultiple integer overflow and buffer overflow issues were discovered in spice-client's handling of LZ compressed frames. A malicious server could cause the client to crash or, potentially, execute arbitrary code.
1 affected packages
spice-gtk
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
spice-gtk | Vulnerable | Vulnerable | Vulnerable | Vulnerable | Vulnerable |
CVE-2018-10873
Medium prioritySome fixes available 16 of 18
A vulnerability was discovered in SPICE before version 0.14.1 where the generated code used for demarshalling messages lacked sufficient bounds checks. A malicious client or server, after authentication, could send specially...
3 affected packages
spice, spice-gtk, spice-protocol
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
spice | Fixed | Fixed | Fixed | Fixed | Not affected |
spice-gtk | Not affected | Not affected | Not affected | Vulnerable | Vulnerable |
spice-protocol | Not affected | Not affected | Not affected | Not affected | Fixed |
CVE-2017-12194
Medium prioritySome fixes available 17 of 19
A flaw was found in the way spice-client processed certain messages sent from the server. An attacker, having control of malicious spice-server, could use this flaw to crash the client or execute arbitrary code with permissions of...
3 affected packages
spice, spice-gtk, spice-protocol
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
spice | Fixed | Fixed | Fixed | Fixed | Not affected |
spice-gtk | Not affected | Not affected | Not affected | Vulnerable | Not affected |
spice-protocol | Not affected | Not affected | Not affected | Not affected | Fixed |
CVE-2017-15108
Medium prioritySome fixes available 14 of 17
spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed.
1 affected packages
spice-vdagent
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
spice-vdagent | Fixed | Fixed | Fixed | Fixed | Vulnerable |
CVE-2017-7506
Medium prioritySome fixes available 3 of 4
spice versions though 0.13 are vulnerable to out-of-bounds memory access when processing specially crafted messages from authenticated attacker to the spice server resulting into crash and/or server memory leak.
1 affected packages
spice
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
spice | — | — | — | — | Fixed |
CVE-2016-3066
Low priorityThe spice-gtk widget allows remote authenticated users to obtain information from the host clipboard.
1 affected packages
spice-gtk
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
spice-gtk | Vulnerable | Vulnerable | Vulnerable | Vulnerable | Vulnerable |
CVE-2016-9578
Medium prioritySome fixes available 4 of 5
A vulnerability was discovered in SPICE before 0.13.90 in the server's protocol handling. An attacker able to connect to the SPICE server could send crafted messages which would cause the process to crash.
1 affected packages
spice
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
spice | — | — | — | — | Fixed |
CVE-2016-9577
Medium prioritySome fixes available 4 of 5
A vulnerability was discovered in SPICE before 0.13.90 in the server's protocol handling. An authenticated attacker could send crafted messages to the SPICE server causing a heap overflow leading to a crash or possible code execution.
1 affected packages
spice
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
spice | — | — | — | — | Fixed |
CVE-2016-2150
Medium prioritySome fixes available 5 of 6
SPICE allows local guest OS users to read from or write to arbitrary host memory locations via crafted primary surface parameters, a similar issue to CVE-2015-5261.
1 affected packages
spice
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
spice | — | — | — | — | Fixed |
CVE-2016-0749
Medium prioritySome fixes available 5 of 6
The smartcard interaction in SPICE allows remote attackers to cause a denial of service (QEMU-KVM process crash) or possibly execute arbitrary code via vectors related to connecting to a guest VM, which triggers a heap-based...
1 affected packages
spice
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
spice | — | — | — | — | Fixed |