suse · CVE-2013-4282

Quick triage

Priority: high Published: 2021-05-30 13:13:58 UTC Updated: 2025-11-05 05:19:55 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2013-4282 severity important: SUSE including 34 source package names (libspice-server-devel, libspice-server-devel-0.12.4-6.1, …), 109 product×package rows across 63 product lines (HPE Helion OpenStack 8, SUSE Enterprise Storage 5, … (63 product lines)): Known Not Affected 64, Fixed 45.

Description:

Stack-based buffer overflow in the reds_handle_ticket function in server/reds.c in SPICE 0.12.0 allows remote attackers to cause a denial of service (crash) via a long password in a SPICE ticket.

cvelogic Threat Intelligence