Severity
8.8HIGH
EPSS
3.7%
top 12.09%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 27
Latest updateMay 13

Description

A vulnerability was discovered in SPICE before 0.13.90 in the server's protocol handling. An authenticated attacker could send crafted messages to the SPICE server causing a heap overflow leading to a crash or possible code execution.

CVSS vector

CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.6 | Impact: 5.9

Affected Packages6 packages

NVDspice_project/spice< 0.13.90
Debianspice< 0.12.8-2.1+3
CVEListV5red_hat/spice0.13.90

Also affects: Debian Linux 8.0, Enterprise Linux 7.3, 7.4, 7.5

🔴Vulnerability Details

3
GHSA
GHSA-fjp3-q3m4-wmjx: A vulnerability was discovered in SPICE before 02022-05-13
OSV
CVE-2016-9577: A vulnerability was discovered in SPICE before 02018-07-27
CVEList
CVE-2016-9577: A vulnerability was discovered in SPICE before 02018-07-27

📋Vendor Advisories

3
Ubuntu
Spice vulnerabilities2017-02-20
Red Hat
spice: Buffer overflow in main_channel_alloc_msg_rcv_buf when reading large messages2017-02-06
Debian
CVE-2016-9577: spice - A vulnerability was discovered in SPICE before 0.13.90 in the server's protocol ...2016

💬Community

2
Bugzilla
CVE-2016-9577 spice: Buffer overflow in main_channel_alloc_msg_rcv_buf when reading large messages [fedora-all]2017-03-15
Bugzilla
CVE-2016-9577 spice: Buffer overflow in main_channel_alloc_msg_rcv_buf when reading large messages2016-12-05