CVE-2017-7506 log
| Source |
|
| Severity | High |
| Remote | Yes |
| Type | Arbitrary code execution |
| Description | Two security issues have been found in spice <= 0.12.8, allowing a remote, authenticated user to get access to memory content by sending a number of monitors bigger than the number of items, and to trigger an integer overflow of the buffer_size variable, leading to a potentially exploitable buffer overflow. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-349 | spice | 0.12.8-2 | 0.12.8+8+ga957a90b-1 | High | Fixed | FS#54808 |
| Date | Advisory | Group | Package | Severity | Type |
|---|---|---|---|---|---|
| 14 Aug 2017 | ASA-201708-12 | AVG-349 | spice | High | arbitrary code execution |