CVE-2020-23793
published 2023-08-22CVE-2020-23793: An issue was discovered in spice-server spice-server-0.14.0-6.el7_6.1.x86_64 of Redhat's VDI product. There is a security vulnerablility that can restart…
PriorityP340high8.6CVSS 3.1
AVNACLPRNUINSCCNINAH
EPSS
0.72%
49.9th percentile
An issue was discovered in spice-server spice-server-0.14.0-6.el7_6.1.x86_64 of Redhat's VDI product. There is a security vulnerablility that can restart KVMvirtual machine without any authorization. It is not yet known if there will be other other effects.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | spice | < spice 0.13.90-0.1 (bookworm) | spice 0.13.90-0.1 (bookworm) |
| spice-space | spice-server | — | — |
| spice_project | spice | >= 0 < 0.13.90-0.1 | 0.13.90-0.1 |
| spice_project | spice | >= 0 < 0.13.90-0.1 | 0.13.90-0.1 |
| spice_project | spice | >= 0 < 0.13.90-0.1 | 0.13.90-0.1 |
| spice_project | spice | >= 0 < 0.13.90-0.1 | 0.13.90-0.1 |
CVSS provenance
nvdv3.18.6HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
osv8.6HIGH
vendor_debian8.6HIGH
vendor_redhat8.6HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
spice: Improper input validation in function async_READ_handler
vendor_redhat·2023-08-22·CVSS 8.6
CVE-2020-23793 [HIGH] CWE-20 spice: Improper input validation in function async_READ_handler
spice: Improper input validation in function async_READ_handler
An issue was discovered in spice-server spice-server-0.14.0-6.el7_6.1.x86_64 of Redhat's VDI product. There is a security vulnerablility that can restart KVMvirtual machine without any authorization. It is not yet known if there will be other other effects.
A flaw was found in spice-server in Redhat's VDI product that can restart KVMvirtual machine without any authorization. A handshake is required before spice-server and spice-client can establish communication, and spice-client will send a request containing information that the server needs. This TCP request requires only host and port; A malformed TCP packet causes the vm to crash and the QEMu-KVM process to be restarted.
Mitigation: Mitigation for this issue is either
Debian
CVE-2020-23793: spice - An issue was discovered in spice-server spice-server-0.14.0-6.el7_6.1.x86_64 of ...
vendor_debian·2020·CVSS 8.6
CVE-2020-23793 [HIGH] CVE-2020-23793: spice - An issue was discovered in spice-server spice-server-0.14.0-6.el7_6.1.x86_64 of ...
An issue was discovered in spice-server spice-server-0.14.0-6.el7_6.1.x86_64 of Redhat's VDI product. There is a security vulnerablility that can restart KVMvirtual machine without any authorization. It is not yet known if there will be other other effects.
Scope: local
bookworm: resolved (fixed in 0.13.90-0.1)
bullseye: resolved (fixed in 0.13.90-0.1)
forky: resolved (fixed in 0.13.90-0.1)
sid: resolved (fixed in 0.13.90-0.1)
trixie: resolved (fixed in 0.13.90-0.1)
OSV
CVE-2020-23793: An issue was discovered in spice-server spice-server-0
osv·2023-08-22·CVSS 8.6
CVE-2020-23793 [HIGH] CVE-2020-23793: An issue was discovered in spice-server spice-server-0
An issue was discovered in spice-server spice-server-0.14.0-6.el7_6.1.x86_64 of Redhat's VDI product. There is a security vulnerablility that can restart KVMvirtual machine without any authorization. It is not yet known if there will be other other effects.
GHSA
GHSA-76gg-j5fc-hc83: An issue was discovered in spice-server spice-server-0
ghsa_unreviewed·2023-08-22
CVE-2020-23793 [HIGH] CWE-862 GHSA-76gg-j5fc-hc83: An issue was discovered in spice-server spice-server-0
An issue was discovered in spice-server spice-server-0.14.0-6.el7_6.1.x86_64 of Redhat's VDI product. There is a security vulnerablility that can restart KVMvirtual machine without any authorization. It is not yet known if there will be other other effects.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-08-22
Published