[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CESA-2017:0253 -- centos 6 spice-server

ID: oval:org.secpod.oval:def:204106Date: (C)2017-02-08   (M)2023-07-28
Class: PATCHFamily: unix




The Simple Protocol for Independent Computing Environments is a remote display protocol for virtual environments. SPICE users can access a virtualized desktop or server from the local system or any system with network access to the server. SPICE is used in Red Hat Enterprise Linux for viewing virtualized guests running on the Kernel-based Virtual Machine hypervisor or on Red Hat Enterprise Virtualization Hypervisors. Security Fix: * A vulnerability was discovered in spice in the server"s protocol handling. An authenticated attacker could send crafted messages to the spice server causing a heap overflow leading to a crash or possible code execution. * A vulnerability was discovered in spice in the server"s protocol handling. An attacker able to connect to the spice server could send crafted messages which would cause the process to crash. These issues were discovered by Frediano Ziglio .

Platform:
CentOS 6
Product:
spice-server
Reference:
CESA-2017:0253
CVE-2016-9577
CVE-2016-9578
CVE    2
CVE-2016-9578
CVE-2016-9577
CPE    2
cpe:/a:spice_project:spice-server
cpe:/o:centos:centos:6

© SecPod Technologies