Name | CVE-2020-14355 |
Description | Multiple buffer overflow vulnerabilities were found in the QUIC image decoding process of the SPICE remote display system, before spice-0.14.2-1. Both the SPICE client (spice-gtk) and server are affected by these flaws. These flaws allow a malicious client or server to send specially crafted messages that, when processed by the QUIC image compression algorithm, result in a process crash or potential code execution. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
References | DLA-2427-1, DLA-2428-1, DSA-4771-1 |
Debian Bugs | 971750, 971751 |
The table below lists information on source packages.
Source Package | Release | Version | Status |
---|---|---|---|
spice (PTS) | bullseye | 0.14.3-2.1 | fixed |
bookworm | 0.15.1-1 | fixed | |
sid, trixie | 0.15.2-1 | fixed | |
spice-gtk (PTS) | bullseye | 0.39-1 | fixed |
bookworm | 0.42-1 | fixed | |
sid, trixie | 0.42-2.1 | fixed |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|---|---|---|---|---|---|
spice | source | stretch | 0.12.8-2.1+deb9u4 | DLA-2427-1 | ||
spice | source | buster | 0.14.0-1.3+deb10u1 | DSA-4771-1 | ||
spice | source | (unstable) | 0.14.3-2 | 971750 | ||
spice-gtk | source | stretch | 0.33-3.3+deb9u2 | DLA-2428-1 | ||
spice-gtk | source | (unstable) | 0.39-1 | 971751 |
[buster] - spice-gtk <no-dsa> (Minor issue)
https://gitlab.freedesktop.org/spice/spice-common/-/commit/762e0abae36033ccde658fd52d3235887b60862d
https://gitlab.freedesktop.org/spice/spice-common/-/commit/404d74782c8b5e57d146c5bf3118bb41bf3378e4
https://gitlab.freedesktop.org/spice/spice-common/-/commit/ef1b6ff7b82e15d759e5415b8e35b92bb1a4c206
https://gitlab.freedesktop.org/spice/spice-common/-/commit/b24fe6b66b86e601c725d30f00c37e684b6395b6