Alerts This Week
Warning Icon 1 535
Alerts This Week
Warning Icon 1 535

Debian: DSA-4771-1 Critical Spice Buffer Overflow Vulnerability

debian
Calendar Grey October 11, 2020
Debian Logo
Debian releases DSA-4771-1 addressing spice vulnerabilities related to buffer overflow concerns and possible denial of service.
Frediano Ziglio discovered multiple buffer overflow vulnerabilities in the QUIC image decoding process of spice, a SPICE protocol client and server library, which could result in d...

Summary

For the stable distribution (buster), this problem has been fixed in
version 0.14.0-1.3+deb10u1.

We recommend that you upgrade your spice packages.

For the detailed security status of spice please refer to its security
tracker page at:
https://security-tracker.debian.org/tracker/source-package/spice

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: spice
CVE ID: CVE-2020-14355

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here