Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-20201

Опубликовано: 01 дек. 2020
Источник: redhat
CVSS3: 5.3

Описание

A flaw was found in spice in versions before 0.14.92. A DoS tool might make it easier for remote attackers to cause a denial of service (CPU consumption) by performing many renegotiations within a single connection.

A flaw was found in spice. A DoS tool might make it easier for remote attackers to cause a denial of service (CPU consumption) by performing many renegotiations within a single connection.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6spice-serverOut of support scope
Red Hat Enterprise Linux 7spiceOut of support scope
Red Hat Enterprise Linux 9spiceAffected
Red Hat Enterprise Linux 8spiceFixedRHSA-2021:192418.05.2021

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-400
https://bugzilla.redhat.com/show_bug.cgi?id=1921846spice: Client initiated renegotiation denial of service

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 4 лет назад

A flaw was found in spice in versions before 0.14.92. A DoS tool might make it easier for remote attackers to cause a denial of service (CPU consumption) by performing many renegotiations within a single connection.

CVSS3: 5.3
nvd
около 4 лет назад

A flaw was found in spice in versions before 0.14.92. A DoS tool might make it easier for remote attackers to cause a denial of service (CPU consumption) by performing many renegotiations within a single connection.

CVSS3: 5.3
debian
около 4 лет назад

A flaw was found in spice in versions before 0.14.92. A DoS tool might ...

suse-cvrf
около 4 лет назад

Security update for spice

suse-cvrf
почти 3 года назад

Security update for spice

5.3 Medium

CVSS3