The (1) red_channel_pipes_add_type and (2) red_channel_pipes_add_empty_msg functions in server/red_channel.c in SPICE before 0.12.4 do not properly perform ring loops, which might allow remote attackers to cause a denial of service (reachable assertion and server exit) by triggering a network error.
CVSS Details
- CVSS 3.1 Base Score: 5.3
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade spice-serverUpgrade spice-server-devel | Dec 1, 2016 | Aug 20, 2013 |
| Debian | — | Upgrade spice | Jul 30, 2024 | Aug 20, 2013 |
| Oracle_linux | — | Upgrade spice-server-develUpgrade spice-server | Oct 16, 2024 | Aug 20, 2013 |
| Ubuntu | — | Upgrade libspice-server1 | Nov 8, 2024 | Aug 20, 2013 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub