7.8
CVSSv3

CVE-2017-15108

Published: 20/01/2018 Updated: 07/10/2022
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

spice-space spice-vdagent

debian debian linux 9.0

Vendor Advisories

Debian Bug report logs - #883238 spice-vdagent: CVE-2017-15108: Improper validation of xfers->save_dir in vdagent_file_xfers_data() Package: src:spice-vdagent; Maintainer for src:spice-vdagent is Liang Guo <guoliang@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 1 Dec 2017 07:24:02 ...