ISOMAN

CVE

CVE-2015-5261

Heap-based buffer overflow in SPICE before 0.12.6 allows guest OS users to read and write to arbitrary memory locations on the host via guest QXL commands related to surface creation.

Severity
HIGH
CVSS
7.1
Published
Modified

Linked Releases

References

  1. http://lists.freedesktop.org/archives/spice-devel/2015-October/022191.html
  2. http://rhn.redhat.com/errata/RHSA-2015-1889.html
  3. http://rhn.redhat.com/errata/RHSA-2015-1890.html
  4. http://www.debian.org/security/2015/dsa-3371
  5. http://www.openwall.com/lists/oss-security/2015/10/06/4
  6. http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html
  7. http://www.securitytracker.com/id/1033753
  8. http://www.ubuntu.com/usn/USN-2766-1
  9. https://bugzilla.redhat.com/show_bug.cgi?id=1261889
  10. https://security.gentoo.org/glsa/201606-05
  11. http://lists.freedesktop.org/archives/spice-devel/2015-October/022191.html
  12. http://rhn.redhat.com/errata/RHSA-2015-1889.html
  13. http://rhn.redhat.com/errata/RHSA-2015-1890.html
  14. http://www.debian.org/security/2015/dsa-3371
  15. http://www.openwall.com/lists/oss-security/2015/10/06/4
  16. http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html
  17. http://www.securitytracker.com/id/1033753
  18. http://www.ubuntu.com/usn/USN-2766-1
  19. https://bugzilla.redhat.com/show_bug.cgi?id=1261889
  20. https://security.gentoo.org/glsa/201606-05