Search CVE reports
11 – 20 of 29 results
Multiple integer overflow and buffer overflow issues were discovered in spice-client's handling of LZ compressed frames. A malicious server could cause the client to crash or, potentially, execute arbitrary code.
1 affected package
spice-gtk
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
spice-gtk | Vulnerable | Vulnerable | Vulnerable | Vulnerable |
Some fixes available 17 of 19
A vulnerability was discovered in SPICE before version 0.14.1 where the generated code used for demarshalling messages lacked sufficient bounds checks. A malicious client or server, after authentication, could send specially...
3 affected packages
spice, spice-gtk, spice-protocol
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
spice | Fixed | Fixed | Fixed | Fixed |
spice-gtk | Not affected | Not affected | Not affected | Vulnerable |
spice-protocol | Not affected | Not affected | Not affected | Not affected |
Some fixes available 3 of 4
spice versions though 0.13 are vulnerable to out-of-bounds memory access when processing specially crafted messages from authenticated attacker to the spice server resulting into crash and/or server memory leak.
1 affected package
spice
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
spice | — | — | — | — |
Some fixes available 15 of 18
spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed.
1 affected package
spice-vdagent
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
spice-vdagent | Fixed | Fixed | Fixed | Fixed |
Some fixes available 18 of 20
A flaw was found in the way spice-client processed certain messages sent from the server. An attacker, having control of malicious spice-server, could use this flaw to crash the client or execute arbitrary code with permissions of...
3 affected packages
spice, spice-gtk, spice-protocol
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
spice | Fixed | Fixed | Fixed | Fixed |
spice-gtk | Not affected | Not affected | Not affected | Vulnerable |
spice-protocol | Not affected | Not affected | Not affected | Not affected |
Some fixes available 4 of 5
A vulnerability was discovered in SPICE before 0.13.90 in the server's protocol handling. An attacker able to connect to the SPICE server could send crafted messages which would cause the process to crash.
1 affected package
spice
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
spice | — | — | — | — |
Some fixes available 4 of 5
A vulnerability was discovered in SPICE before 0.13.90 in the server's protocol handling. An authenticated attacker could send crafted messages to the SPICE server causing a heap overflow leading to a crash or possible code execution.
1 affected package
spice
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
spice | — | — | — | — |
The spice-gtk widget allows remote authenticated users to obtain information from the host clipboard.
1 affected package
spice-gtk
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
spice-gtk | Vulnerable | Vulnerable | Vulnerable | Vulnerable |
Some fixes available 5 of 6
SPICE allows local guest OS users to read from or write to arbitrary host memory locations via crafted primary surface parameters, a similar issue to CVE-2015-5261.
1 affected package
spice
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
spice | — | — | — | — |
Some fixes available 5 of 6
The smartcard interaction in SPICE allows remote attackers to cause a denial of service (QEMU-KVM process crash) or possibly execute arbitrary code via vectors related to connecting to a guest VM, which triggers a heap-based...
1 affected package
spice
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
spice | — | — | — | — |