{"id":"CVE-2020-14355","details":"Multiple buffer overflow vulnerabilities were found in the QUIC image decoding process of the SPICE remote display system, before spice-0.14.2-1. Both the SPICE client (spice-gtk) and server are affected by these flaws. These flaws allow a malicious client or server to send specially crafted messages that, when processed by the QUIC image compression algorithm, result in a process crash or potential code execution.","modified":"2026-07-08T05:58:30.450539081Z","published":"2020-10-07T15:15:12.397Z","related":["SUSE-SU-2020:3070-1","SUSE-SU-2020:3071-1","SUSE-SU-2020:3084-1","SUSE-SU-2020:3085-1","SUSE-SU-2021:14744-1","SUSE-SU-2021:1901-1","SUSE-SU-2021:1902-1","SUSE-SU-2021:1905-1","SUSE-SU-2021:1911-1","SUSE-SU-2021:1928-1","SUSE-SU-2021:1956-1","openSUSE-SU-2020:1802-1","openSUSE-SU-2020:1803-1","openSUSE-SU-2024:11397-1","openSUSE-SU-2024:11398-1"],"database_specific":{"unresolved_ranges":[{"vendor_product":"canonical:ubuntu_linux","cpes":["cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*","cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*","cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*","cpe:2.3:o:canonical:ubuntu_linux:20.04:*:*:*:lts:*:*:*"],"extracted_events":[{"introduced":"14.04"},{"last_affected":"14.04"},{"introduced":"16.04"},{"last_affected":"16.04"},{"introduced":"18.04"},{"last_affected":"18.04"},{"introduced":"20.04"},{"last_affected":"20.04"}],"source":"CPE_STRING"},{"cpes":["cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"9.0"},{"last_affected":"9.0"}],"source":"CPE_STRING","vendor_product":"debian:debian_linux"},{"source":"CPE_STRING","vendor_product":"opensuse:leap","cpes":["cpe:2.3:o:opensuse:leap:15.2:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"15.2"},{"last_affected":"15.2"}]},{"source":"CPE_STRING","vendor_product":"redhat:enterprise_linux","cpes":["cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*","cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*","cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"6.0"},{"last_affected":"6.0"},{"introduced":"7.0"},{"last_affected":"7.0"},{"introduced":"8.0"},{"last_affected":"8.0"}]},{"extracted_events":[{"introduced":"8.2"},{"last_affected":"8.2"}],"source":"CPE_STRING","vendor_product":"redhat:enterprise_linux_aus","cpes":["cpe:2.3:o:redhat:enterprise_linux_aus:8.2:*:*:*:*:*:*:*"]},{"source":"CPE_STRING","vendor_product":"redhat:enterprise_linux_eus","cpes":["cpe:2.3:o:redhat:enterprise_linux_eus:8.1:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"8.1"},{"last_affected":"8.1"}]},{"source":"CPE_STRING","vendor_product":"redhat:enterprise_linux_tus","cpes":["cpe:2.3:o:redhat:enterprise_linux_tus:8.2:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"8.2"},{"last_affected":"8.2"}]},{"source":"CPE_STRING","vendor_product":"redhat:enterprise_linux_update_services_for_sap_solutions","cpes":["cpe:2.3:o:redhat:enterprise_linux_update_services_for_sap_solutions:8.0:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"8.0"},{"last_affected":"8.0"}]},{"source":"CPE_STRING","vendor_product":"redhat:openstack","cpes":["cpe:2.3:a:redhat:openstack:16.1:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"16.1"},{"last_affected":"16.1"}]}]},"references":[{"type":"ADVISORY","url":"http://lists.opensuse.org/opensuse-security-announce/2020-11/msg00000.html"},{"type":"ADVISORY","url":"http://lists.opensuse.org/opensuse-security-announce/2020-11/msg00001.html"},{"type":"ADVISORY","url":"https://lists.debian.org/debian-lts-announce/2020/11/msg00001.html"},{"type":"ADVISORY","url":"https://lists.debian.org/debian-lts-announce/2020/11/msg00002.html"},{"type":"ADVISORY","url":"https://usn.ubuntu.com/4572-1/"},{"type":"ADVISORY","url":"https://usn.ubuntu.com/4572-2/"},{"type":"ADVISORY","url":"https://www.debian.org/security/2020/dsa-4771"},{"type":"FIX","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1868435"},{"type":"FIX","url":"https://www.openwall.com/lists/oss-security/2020/10/06/10"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://gitlab.freedesktop.org/spice/spice","events":[{"introduced":"0"},{"fixed":"7cbd70b931db76c69c89c2d9d5d704f67381a81b"}],"database_specific":{"source":"CPE_RANGE","cpe":"cpe:2.3:a:spice_project:spice:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"fixed":"0.14.2"}]}}],"versions":["v0.14.1","v0.14.0","v0.13.91","v0.13.90","v0.13.3","v0.13.2","v0.13.1","v0.13.0","v0.12.6","v0.12.5","v0.12.4","v0.12.3","v0.12.2","v0.12.0","0.12.0","0.11.3","0.11.0","0.10.0","0.9.1","0.9.0","0.6.3","0.6.2","0.6.1","0.6.0","0.5.3","0.5.2"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-14355.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L"}]}