7.5
CVSSv3

CVE-2019-3813

Published: 04/02/2019 Updated: 26/04/2022
CVSS v2 Base Score: 5.4 | Impact Score: 6.4 | Exploitability Score: 5.5
CVSS v3 Base Score: 7.5 | Impact Score: 5.9 | Exploitability Score: 1.6
VMScore: 481
Vector: AV:A/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Spice, versions 0.5.2 up to and including 0.14.1, are vulnerable to an out-of-bounds read due to an off-by-one error in memslot_get_virt. This may lead to a denial of service, or, in the worst case, code-execution by unauthenticated attackers.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

spice project spice

redhat enterprise linux desktop 7.0

redhat enterprise linux workstation 7.0

redhat enterprise linux server 7.0

redhat enterprise linux desktop 6.0

redhat enterprise linux server 6.0

redhat enterprise linux workstation 6.0

redhat enterprise linux server tus 7.6

redhat enterprise linux server eus 7.6

redhat enterprise linux server aus 7.6

debian debian linux 8.0

debian debian linux 9.0

canonical ubuntu linux 16.04

canonical ubuntu linux 14.04

canonical ubuntu linux 18.04

canonical ubuntu linux 18.10

Vendor Advisories

Debian Bug report logs - #920762 spice: CVE-2019-3813: Off-by-one error in array access in spice/server/memslotc Package: src:spice; Maintainer for src:spice is Liang Guo <guoliang@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Mon, 28 Jan 2019 20:15:01 UTC Severity: grave Tags: patch, secu ...
Spice could be made to crash or run programs if it received specially crafted network traffic ...
Synopsis Important: redhat-virtualization-host security update Type/Severity Security Advisory: Important Topic An update for redhat-virtualization-host is now available for Red Hat Virtualization 4 for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of ...
Synopsis Important: spice-server security update Type/Severity Security Advisory: Important Topic An update for spice-server is now available for Red Hat Enterprise Linux 6Red Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring System (CVSS) b ...
Synopsis Important: spice security update Type/Severity Security Advisory: Important Topic An update for spice is now available for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring System (CVSS) base score, whi ...
Spice, versions 052 through 0140, are vulnerable to an out-of-bounds read due to an off-by-one error in memslot_get_virt This may lead to a denial of service, or, in the worst case, code-execution by unauthenticated attackers(CVE-2019-3813) ...
Spice, versions 052 through 0141, are vulnerable to an out-of-bounds read due to an off-by-one error in memslot_get_virt This may lead to a denial of service, or, in the worst case, code-execution by unauthenticated attackers ...
Spice, versions 052 through 0141, are vulnerable to an out-of-bounds read due to an off-by-one error in memslot_get_virt This may lead to a denial of service, or, in the worst case, code-execution by unauthenticated attackers ...