CVE-2016-9577: Buffer Overflow
A buffer overflow vulnerability in mainchannelallocmsgrcvbuf was found that occurs when reading large messages due to missing buffer size check.
Product bug:
https://bugzilla.redhat.com/showbug.cgi?id=1401038
Other sources
A vulnerability was discovered in SPICE before 0.13.90 in the server's protocol handling. An authenticated attacker could send crafted messages to the SPICE server causing a heap overflow leading to a crash or possible code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-9577?
CVE-2016-9577 is classified as a medium severity vulnerability due to the potential for buffer overflow attacks.
How do I fix CVE-2016-9577?
To fix CVE-2016-9577, update to the fixed versions of the spice package specified in your operating system's vulnerability notice.
Which software versions are vulnerable to CVE-2016-9577?
Affected versions of spice include 0.14.0-1.3+deb10u1, 0.14.3-2.1, and versions up to 0.13.90 for earlier releases.
What impact does CVE-2016-9577 have on systems?
CVE-2016-9577 can allow an attacker to execute arbitrary code or crash the affected system by sending maliciously crafted large messages.
Is CVE-2016-9577 being actively exploited in the wild?
As of the last reported assessments, there have been no confirmed active exploits targeting CVE-2016-9577.