|Category:||Red Hat Local Security Checks|
|Title:||RedHat Update for spice RHSA-2017:2471-01|
|Summary:||The remote host is missing an update for the 'spice'; package(s) announced via the referenced advisory.|
The remote host is missing an update for the 'spice'
package(s) announced via the referenced advisory.
The Simple Protocol for Independent
Computing Environments (SPICE) is a remote display system built for virtual
environments which allows the user to view a computing 'desktop' environment not
only on the machine where it is running, but from anywhere on the Internet and
from a wide variety of machine architectures. Security Fix(es): * A
vulnerability was discovered in spice server's protocol handling. An
authenticated attacker could send specially crafted messages to the spice
server, causing out-of-bounds memory accesses, leading to parts of server memory
being leaked or a crash. (CVE-2017-7506) This issue was discovered by Frediano
Ziglio (Red Hat).
Red Hat Enterprise Linux Server (v. 7)
Please Install the Updated Packages.
Common Vulnerability Exposure (CVE) ID: CVE-2017-7506|
BugTraq ID: 99583
Debian Security Information: DSA-3907 (Google Search)
RedHat Security Advisories: RHSA-2017:2471
RedHat Security Advisories: RHSA-2018:3522
|Copyright||Copyright (C) 2017 Greenbone Networks GmbH|
|This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.