Security Advisory

CVE-2016-0749

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-06-09 16:00:00
Last updated 2024-08-05 22:30:03
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

The smartcard interaction in SPICE allows remote attackers to cause a denial of service (QEMU-KVM process crash) or possibly execute arbitrary code via vectors related to connecting to a guest VM, which triggers a heap-based buffer overflow.