CVE-2015-5261

Heap-based buffer overflow in SPICE before 0.12.6 allows guest OS users to read and write to arbitrary memory locations on the host via guest QXL commands related to surface creation.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:15.04:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_hpc_node:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_eus:6.7.z:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_hpc_node:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_hpc_node_eus:7.1:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_eus:7.1:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*

Configuration 4 (hide)

OR cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*

Configuration 5 (hide)

cpe:2.3:a:spice_project:spice:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:32

Type Values Removed Values Added
References () http://lists.freedesktop.org/archives/spice-devel/2015-October/022191.html - () http://lists.freedesktop.org/archives/spice-devel/2015-October/022191.html -
References () http://rhn.redhat.com/errata/RHSA-2015-1889.html - () http://rhn.redhat.com/errata/RHSA-2015-1889.html -
References () http://rhn.redhat.com/errata/RHSA-2015-1890.html - () http://rhn.redhat.com/errata/RHSA-2015-1890.html -
References () http://www.debian.org/security/2015/dsa-3371 - () http://www.debian.org/security/2015/dsa-3371 -
References () http://www.openwall.com/lists/oss-security/2015/10/06/4 - () http://www.openwall.com/lists/oss-security/2015/10/06/4 -
References () http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html - () http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html -
References () http://www.securitytracker.com/id/1033753 - () http://www.securitytracker.com/id/1033753 -
References () http://www.ubuntu.com/usn/USN-2766-1 - () http://www.ubuntu.com/usn/USN-2766-1 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=1261889 - () https://bugzilla.redhat.com/show_bug.cgi?id=1261889 -
References () https://security.gentoo.org/glsa/201606-05 - () https://security.gentoo.org/glsa/201606-05 -

Information

Published : 2016-06-07 14:06

Updated : 2024-11-21 02:32


NVD link : CVE-2015-5261

Mitre link : CVE-2015-5261

CVE.ORG link : CVE-2015-5261


JSON object : View

Products Affected

redhat

  • enterprise_linux_server
  • enterprise_linux_server_eus
  • enterprise_linux_desktop
  • enterprise_linux_hpc_node_eus
  • enterprise_linux_hpc_node
  • enterprise_linux_workstation

spice_project

  • spice

canonical

  • ubuntu_linux

debian

  • debian_linux
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer