PT-2016-5030 · Red Hat+3 · Spice+4

Adam Mariš

·

Published

2016-06-06

·

Updated

2024-06-15

·

CVE-2016-2150

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions SPICE (affected versions not specified)
Description The issue allows local guest OS users to read from or write to arbitrary host memory locations via crafted primary surface parameters. This is similar to a previously known issue.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CESA-2016_1204
CESA-2016_1205
CVE-2016-2150
DLA-531-1
DSA-3596-1
MGASA-2016-0250
OPENSUSE-SU-2024:10393-1
RHSA-2016:1204
RHSA-2016:1205
RHSA-2016_1204
RHSA-2016_1205
SUSE-SU-2016:1559-1
SUSE-SU-2016:1561-1
SUSE-SU-2021:14744-1
SUSE-SU-2021_14744-1
USN-3014-1

Affected Products

Centos
Red Hat
Spice
Suse
Ubuntu