Vulnerability: Out-of-Bounds Memory Access in Spice Versions 0.13 and Below

Vulnerability: Out-of-Bounds Memory Access in Spice Versions 0.13 and Below

CVE-2017-7506 · MEDIUM Severity

AV:N/AC:L/AU:S/C:P/I:P/A:P

spice versions though 0.13 are vulnerable to out-of-bounds memory access when processing specially crafted messages from authenticated attacker to the spice server resulting into crash and/or server memory leak.

Learn more about our Cis Benchmark Audit For Server Software.