Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
RHSA-2026:0077
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2026:0077
Import Source
https://security.access.redhat.com/data/osv/RHSA-2026:0077.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2026:0077
Upstream
CVE-2025-59375
CVE-2025-6965
CVE-2025-8176
CVE-2025-9900
Published
2026-01-06T10:09:34Z
Modified
2026-01-08T10:30:43.440932Z
Severity
8.8 (High)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: spice-client-win security update
Details
References
https://access.redhat.com/errata/RHSA-2026:0077
https://access.redhat.com/security/updates/classification/#important
https://bugzilla.redhat.com/show_bug.cgi?id=2380149
https://bugzilla.redhat.com/show_bug.cgi?id=2383598
https://bugzilla.redhat.com/show_bug.cgi?id=2392784
https://bugzilla.redhat.com/show_bug.cgi?id=2395108
https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_0077.json
https://access.redhat.com/security/cve/CVE-2025-6965
https://www.cve.org/CVERecord?id=CVE-2025-6965
https://nvd.nist.gov/vuln/detail/CVE-2025-6965
https://www.sqlite.org/src/info/5508b56fd24016c13981ec280ecdd833007c9d8dd595edb295b984c2b487b5c8
https://access.redhat.com/security/cve/CVE-2025-8176
https://www.cve.org/CVERecord?id=CVE-2025-8176
https://nvd.nist.gov/vuln/detail/CVE-2025-8176
http://www.libtiff.org/
https://gitlab.com/libtiff/libtiff/-/commit/fe10872e53efba9cc36c66ac4ab3b41a839d5172
https://gitlab.com/libtiff/libtiff/-/issues/707
https://gitlab.com/libtiff/libtiff/-/merge_requests/727
https://vuldb.com/?ctiid.317590
https://vuldb.com/?id.317590
https://vuldb.com/?submit.621796
https://access.redhat.com/security/cve/CVE-2025-9900
https://www.cve.org/CVERecord?id=CVE-2025-9900
https://nvd.nist.gov/vuln/detail/CVE-2025-9900
https://github.com/SexyShoelessGodofWar/LibTiff-4.7.0-Write-What-Where?tab=readme-ov-file
https://gitlab.com/libtiff/libtiff/-/issues/704
https://gitlab.com/libtiff/libtiff/-/merge_requests/732
https://libtiff.gitlab.io/libtiff/releases/v4.7.1.html
https://access.redhat.com/security/cve/CVE-2025-59375
https://www.cve.org/CVERecord?id=CVE-2025-59375
https://nvd.nist.gov/vuln/detail/CVE-2025-59375
https://github.com/libexpat/libexpat/blob/676a4c531ec768732fac215da9730b5f50fbd2bf/expat/Changes#L45-L74
https://github.com/libexpat/libexpat/issues/1018
https://github.com/libexpat/libexpat/pull/1034
https://issues.oss-fuzz.com/issues/439133977
Affected packages
Red Hat:rhel_aus:8.4::appstream
spice-client-win
Package
Name
spice-client-win
Purl
pkg:rpm/redhat/spice-client-win
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.10-3.el8_4.1
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:0077.json"
spice-client-win-x64
Package
Name
spice-client-win-x64
Purl
pkg:rpm/redhat/spice-client-win-x64
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.10-3.el8_4.1
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:0077.json"
spice-client-win-x86
Package
Name
spice-client-win-x86
Purl
pkg:rpm/redhat/spice-client-win-x86
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.10-3.el8_4.1
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:0077.json"
Red Hat:rhel_eus_long_life:8.4::appstream
spice-client-win
Package
Name
spice-client-win
Purl
pkg:rpm/redhat/spice-client-win
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.10-3.el8_4.1
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:0077.json"
spice-client-win-x64
Package
Name
spice-client-win-x64
Purl
pkg:rpm/redhat/spice-client-win-x64
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.10-3.el8_4.1
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:0077.json"
spice-client-win-x86
Package
Name
spice-client-win-x86
Purl
pkg:rpm/redhat/spice-client-win-x86
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.10-3.el8_4.1
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:0077.json"
RHSA-2026:0077 - OSV