Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Stack-based buffer overflow in the reds_handle_ticket function in server/reds.c in SPICE 0.12.0 allows remote attackers to cause a denial of service (crash) via a long password in a SPICE ticket.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
spice 缓冲区错误漏洞
Vulnerability Description
spice是一个企业虚拟化桌面版所使用的自适应远程呈现开源协议。该产品主要用于将用户与其虚拟桌面进行连接,能够提供与物理桌面完全相同的最终用户体验。 spice 0.12.0版本存在缓冲区错误漏洞,该漏洞源于存在基于堆栈的缓冲区溢出,允许远程攻击者通过票证中的长密码导致拒绝服务(崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A