Логотип exploitDog
bind:"CVE-2020-25650" OR bind:"CVE-2020-25651" OR bind:"CVE-2020-25652" OR bind:"CVE-2020-25653"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2020-25650" OR bind:"CVE-2020-25651" OR bind:"CVE-2020-25652" OR bind:"CVE-2020-25653"

Количество 31

Количество 31

redhat логотип

CVE-2020-25653

больше 5 лет назад

A race condition vulnerability was found in the way the spice-vdagentd daemon handled new client connections. This flaw may allow an unprivileged local guest user to become the active agent for spice-vdagentd, possibly resulting in a denial of service or information leakage from the host. The highest threat from this vulnerability is to data confidentiality as well as system availability. This flaw affects spice-vdagent versions 0.20 and prior.

CVSS3: 6.4
EPSS: Низкий
nvd логотип

CVE-2020-25653

около 5 лет назад

A race condition vulnerability was found in the way the spice-vdagentd daemon handled new client connections. This flaw may allow an unprivileged local guest user to become the active agent for spice-vdagentd, possibly resulting in a denial of service or information leakage from the host. The highest threat from this vulnerability is to data confidentiality as well as system availability. This flaw affects spice-vdagent versions 0.20 and prior.

CVSS3: 6.3
EPSS: Низкий
msrc логотип

CVE-2020-25653

около 4 лет назад

CVSS3: 6.3
EPSS: Низкий
debian логотип

CVE-2020-25653

около 5 лет назад

A race condition vulnerability was found in the way the spice-vdagentd ...

CVSS3: 6.3
EPSS: Низкий
ubuntu логотип

CVE-2020-25652

около 5 лет назад

A flaw was found in the spice-vdagentd daemon, where it did not properly handle client connections that can be established via the UNIX domain socket in `/run/spice-vdagentd/spice-vdagent-sock`. Any unprivileged local guest user could use this flaw to prevent legitimate agents from connecting to the spice-vdagentd daemon, resulting in a denial of service. The highest threat from this vulnerability is to system availability. This flaw affects spice-vdagent versions 0.20 and prior.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2020-25652

больше 5 лет назад

A flaw was found in the spice-vdagentd daemon, where it did not properly handle client connections that can be established via the UNIX domain socket in `/run/spice-vdagentd/spice-vdagent-sock`. Any unprivileged local guest user could use this flaw to prevent legitimate agents from connecting to the spice-vdagentd daemon, resulting in a denial of service. The highest threat from this vulnerability is to system availability. This flaw affects spice-vdagent versions 0.20 and prior.

CVSS3: 3.3
EPSS: Низкий
nvd логотип

CVE-2020-25652

около 5 лет назад

A flaw was found in the spice-vdagentd daemon, where it did not properly handle client connections that can be established via the UNIX domain socket in `/run/spice-vdagentd/spice-vdagent-sock`. Any unprivileged local guest user could use this flaw to prevent legitimate agents from connecting to the spice-vdagentd daemon, resulting in a denial of service. The highest threat from this vulnerability is to system availability. This flaw affects spice-vdagent versions 0.20 and prior.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2020-25652

около 4 лет назад

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2020-25652

около 5 лет назад

A flaw was found in the spice-vdagentd daemon, where it did not proper ...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-6rmh-mmff-jmfj

больше 3 лет назад

A flaw was found in the spice-vdagentd daemon, where it did not properly handle client connections that can be established via the UNIX domain socket in `/run/spice-vdagentd/spice-vdagent-sock`. Any unprivileged local guest user could use this flaw to prevent legitimate agents from connecting to the spice-vdagentd daemon, resulting in a denial of service. The highest threat from this vulnerability is to system availability. This flaw affects spice-vdagent versions 0.20 and prior.

EPSS: Низкий
github логотип

GHSA-5v7v-8wfp-pqqp

больше 3 лет назад

A race condition vulnerability was found in the way the spice-vdagentd daemon handled new client connections. This flaw may allow an unprivileged local guest user to become the active agent for spice-vdagentd, possibly resulting in a denial of service or information leakage from the host. The highest threat from this vulnerability is to data confidentiality as well as system availability. This flaw affects spice-vdagent versions 0.20 and prior.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2020-25653

A race condition vulnerability was found in the way the spice-vdagentd daemon handled new client connections. This flaw may allow an unprivileged local guest user to become the active agent for spice-vdagentd, possibly resulting in a denial of service or information leakage from the host. The highest threat from this vulnerability is to data confidentiality as well as system availability. This flaw affects spice-vdagent versions 0.20 and prior.

CVSS3: 6.4
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-25653

A race condition vulnerability was found in the way the spice-vdagentd daemon handled new client connections. This flaw may allow an unprivileged local guest user to become the active agent for spice-vdagentd, possibly resulting in a denial of service or information leakage from the host. The highest threat from this vulnerability is to data confidentiality as well as system availability. This flaw affects spice-vdagent versions 0.20 and prior.

CVSS3: 6.3
0%
Низкий
около 5 лет назад
msrc логотип
CVSS3: 6.3
0%
Низкий
около 4 лет назад
debian логотип
CVE-2020-25653

A race condition vulnerability was found in the way the spice-vdagentd ...

CVSS3: 6.3
0%
Низкий
около 5 лет назад
ubuntu логотип
CVE-2020-25652

A flaw was found in the spice-vdagentd daemon, where it did not properly handle client connections that can be established via the UNIX domain socket in `/run/spice-vdagentd/spice-vdagent-sock`. Any unprivileged local guest user could use this flaw to prevent legitimate agents from connecting to the spice-vdagentd daemon, resulting in a denial of service. The highest threat from this vulnerability is to system availability. This flaw affects spice-vdagent versions 0.20 and prior.

CVSS3: 5.5
0%
Низкий
около 5 лет назад
redhat логотип
CVE-2020-25652

A flaw was found in the spice-vdagentd daemon, where it did not properly handle client connections that can be established via the UNIX domain socket in `/run/spice-vdagentd/spice-vdagent-sock`. Any unprivileged local guest user could use this flaw to prevent legitimate agents from connecting to the spice-vdagentd daemon, resulting in a denial of service. The highest threat from this vulnerability is to system availability. This flaw affects spice-vdagent versions 0.20 and prior.

CVSS3: 3.3
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-25652

A flaw was found in the spice-vdagentd daemon, where it did not properly handle client connections that can be established via the UNIX domain socket in `/run/spice-vdagentd/spice-vdagent-sock`. Any unprivileged local guest user could use this flaw to prevent legitimate agents from connecting to the spice-vdagentd daemon, resulting in a denial of service. The highest threat from this vulnerability is to system availability. This flaw affects spice-vdagent versions 0.20 and prior.

CVSS3: 5.5
0%
Низкий
около 5 лет назад
msrc логотип
CVSS3: 5.5
0%
Низкий
около 4 лет назад
debian логотип
CVE-2020-25652

A flaw was found in the spice-vdagentd daemon, where it did not proper ...

CVSS3: 5.5
0%
Низкий
около 5 лет назад
github логотип
GHSA-6rmh-mmff-jmfj

A flaw was found in the spice-vdagentd daemon, where it did not properly handle client connections that can be established via the UNIX domain socket in `/run/spice-vdagentd/spice-vdagent-sock`. Any unprivileged local guest user could use this flaw to prevent legitimate agents from connecting to the spice-vdagentd daemon, resulting in a denial of service. The highest threat from this vulnerability is to system availability. This flaw affects spice-vdagent versions 0.20 and prior.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-5v7v-8wfp-pqqp

A race condition vulnerability was found in the way the spice-vdagentd daemon handled new client connections. This flaw may allow an unprivileged local guest user to become the active agent for spice-vdagentd, possibly resulting in a denial of service or information leakage from the host. The highest threat from this vulnerability is to data confidentiality as well as system availability. This flaw affects spice-vdagent versions 0.20 and prior.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу