Skip to main content

Vendor/product archive

redhat / spice-xpi CVEs

Beta · best-effort

4 CVEs tagged to redhat / spice-xpi0 Critical, 0 High, 1 Medium, 3 Low, 0 Unrated.

CVE-2011-1179

Published Apr 18, 2011

The SPICE Firefox plug-in (spice-xpi) 2.4, 2.3, 2.2, and possibly other versions allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code v…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-0012

Published Apr 18, 2011

The SPICE Firefox plug-in (spice-xpi) 2.4, 2.3, 2.2, and possibly other versions allows local users to overwrite arbitrary files via a symlink attack on the usbrdrctl log file, wh…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2010-2794

Published Aug 30, 2010

The SPICE (aka spice-xpi) plug-in 2.2 for Firefox allows local users to overwrite arbitrary files via a symlink attack on an unspecified log file.

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2010-2792

Published Aug 30, 2010

Race condition in the SPICE (aka spice-xpi) plug-in 2.2 for Firefox allows local users to obtain sensitive information, and conduct man-in-the-middle attacks, by providing a UNIX…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1