Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-0749

Опубликовано: 09 июн. 2016
Источник: debian
EPSS Средний

Описание

The smartcard interaction in SPICE allows remote attackers to cause a denial of service (QEMU-KVM process crash) or possibly execute arbitrary code via vectors related to connecting to a guest VM, which triggers a heap-based buffer overflow.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
spicefixed0.12.6-4.1package
spicenot-affectedwheezypackage

EPSS

Процентиль: 95%
0.20473
Средний

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 9 лет назад

The smartcard interaction in SPICE allows remote attackers to cause a denial of service (QEMU-KVM process crash) or possibly execute arbitrary code via vectors related to connecting to a guest VM, which triggers a heap-based buffer overflow.

redhat
около 9 лет назад

The smartcard interaction in SPICE allows remote attackers to cause a denial of service (QEMU-KVM process crash) or possibly execute arbitrary code via vectors related to connecting to a guest VM, which triggers a heap-based buffer overflow.

CVSS3: 9.8
nvd
около 9 лет назад

The smartcard interaction in SPICE allows remote attackers to cause a denial of service (QEMU-KVM process crash) or possibly execute arbitrary code via vectors related to connecting to a guest VM, which triggers a heap-based buffer overflow.

CVSS3: 9.8
github
больше 3 лет назад

The smartcard interaction in SPICE allows remote attackers to cause a denial of service (QEMU-KVM process crash) or possibly execute arbitrary code via vectors related to connecting to a guest VM, which triggers a heap-based buffer overflow.

suse-cvrf
около 9 лет назад

Security update for spice

EPSS

Процентиль: 95%
0.20473
Средний