Fedora 18 : spice-0.12.4-1.fc18 (2013-14362)

This script is Copyright (C) 2013-2015 Tenable Network Security, Inc.


Synopsis :

The remote Fedora host is missing a security update.

Description :

- New upstream bug-fix release 0.12.4

- Fixes a client triggerable abort CVE-2013-4130

- Add patches from upstream git to fix
sound-channel-free crash (rhbz#986407)

- Stop building spicec, it's obsolete and superseded by
remote-viewer (part of virt-viewer)

Note that Tenable Network Security has extracted the preceding
description block directly from the Fedora security advisory. Tenable
has attempted to automatically clean and format it as much as possible
without introducing additional issues.

See also :

https://bugzilla.redhat.com/show_bug.cgi?id=984769
http://www.nessus.org/u?fc369dd1

Solution :

Update the affected spice package.

Risk factor :

Medium / CVSS Base Score : 5.0
(CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P)
CVSS Temporal Score : 4.3
(CVSS2#E:ND/RL:OF/RC:C)
Public Exploit Available : false

Family: Fedora Local Security Checks

Nessus Plugin ID: 69363 ()

Bugtraq ID: 61192

CVE ID: CVE-2013-4130

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now