CVE-2016-9578
HIGH7.5EPSS 3.3%Published: 7/27/2018Modified: 4/28/2026
Description
A vulnerability was discovered in SPICE before 0.13.90 in the server's protocol handling. An attacker able to connect to the SPICE server could send crafted messages which would cause the process to crash.
Affected packages (2)
- Alpine/spicefrom 0, < 0.12.8-r3
- Debian/spicefrom 0, < 0.12.8-2.1
CVSS scores
| Source | Version | Severity | Vector |
|---|---|---|---|
| osv | CVSS 3.1 | HIGH7.5 | CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |