Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11177
HistoryJan 15, 2019 - 8:58 a.m.

Denial Of Service (DoS)

2019-01-1508:58:05
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

EPSS

0.021

Percentile

89.1%

spice-server is vulnerable to denial of service (DoS) attacks. The vulnerability exists as the (1) red_channel_pipes_add_type and (2) red_channel_pipes_add_empty_msg functions in server/red_channel.c in SPICE before 0.12.4 do not properly perform ring loops, which might allow remote attackers to cause a denial of service (reachable assertion and server exit) by triggering a network error.