{"id":"MGASA-2021-0405","summary":"Updated spice packages fix security vulnerability","details":"Updated spice packages fix security vulnerability:\n\nA flaw was found in spice in versions before 0.14.92. A DoS tool might make\nit easier for remote attackers to cause a denial of service (CPU consumption)\nby performing many renegotiations within a single connection\n(CVE-2021-20201).\n","modified":"2026-04-16T04:44:43.502850746Z","published":"2021-08-15T08:38:04Z","upstream":["CVE-2021-20201"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2021-0405.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=28947"},{"type":"WEB","url":"https://access.redhat.com/errata/RHSA-2021:1924"},{"type":"WEB","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/AINSWYQLD5FH4GUOEP5FWWA5CMFHTUDX/"}],"affected":[{"package":{"name":"spice","ecosystem":"Mageia:8","purl":"pkg:rpm/mageia/spice?arch=source&distro=mageia-8"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.14.3-3.1.mga8"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2021-0405.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}