[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250039

 
 

909

 
 

195882

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2017:0254 -- Redhat spice

ID: oval:org.secpod.oval:def:70461Date: (C)2021-03-24   (M)2022-10-10
Class: PATCHFamily: unix




The Simple Protocol for Independent Computing Environments is a remote display system built for virtual environments which allows the user to view a computing "desktop" environment not only on the machine where it is running, but from anywhere on the Internet and from a wide variety of machine architectures. Security Fix: * A vulnerability was discovered in spice server"s protocol handling. An authenticated attacker could send specially crafted messages to the spice server, causing out-of-bounds memory accesses, leading to parts of server memory being leaked or a crash. This issue was discovered by Frediano Ziglio .A vulnerability was discovered in spice in the server's protocol handling. An authenticated attacker could send crafted messages to the spice server causing a heap overflow leading to a crash or possible code execution. (CVE-2016-9577). A vulnerability was discovered in spice in the server's protocol handling. An attacker able to connect to the spice server could send crafted messages which would cause the process to crash. (CVE-2016-9578)

Platform:
Red Hat Enterprise Linux 7
Product:
spice
Reference:
RHSA-2017:0254-01
CVE-2016-9577
CVE-2016-9578
CVE    2
CVE-2016-9578
CVE-2016-9577

© SecPod Technologies