Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2016-2150

Disclosure Date: June 09, 2016 (last updated October 05, 2023)
SPICE allows local guest OS users to read from or write to arbitrary host memory locations via crafted primary surface parameters, a similar issue to CVE-2015-5261.
Attacker Value
Unknown

CVE-2015-5261

Disclosure Date: June 07, 2016 (last updated October 05, 2023)
Heap-based buffer overflow in SPICE before 0.12.6 allows guest OS users to read and write to arbitrary memory locations on the host via guest QXL commands related to surface creation.