Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Debian: DSA-4319-1 Critical: Spice Denial Of Service Threat

debian
Calendar Grey October 15, 2018
Debian Logo
Critical Debian Security Notice DSA-4320-2 addresses vulnerabilities in OpenSSL related to potential data leaks, which could lead to unauthorized access issues.
Frediano Ziglio reported a missing check in the script to generate demarshalling code in the SPICE protocol client and server library

Summary

For the stable distribution (stretch), this problem has been fixed in
version 0.12.8-2.1+deb9u2.

We recommend that you upgrade your spice packages.

For the detailed security status of spice please refer to its security
tracker page at:
https://security-tracker.debian.org/tracker/source-package/spice

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: spice
CVE ID: CVE-2018-10873

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here