CVE-2021-20201
28.05.2021, 11:15
A flaw was found in spice in versions before 0.14.92. A DoS tool might make it easier for remote attackers to cause a denial of service (CPU consumption) by performing many renegotiations within a single connection.Enginsight
| Vendor | Product | Version |
|---|---|---|
| spice_project | spice | 𝑥 < 0.14.92 |
| redhat | enterprise_linux | 6.0 |
| redhat | enterprise_linux | 7.0 |
| redhat | enterprise_linux | 8.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| spice |
| ||||||||||||||||||||||||
| spice-gtk |
| ||||||||||||||||||||||||
| spice-protocol |
|
References