A flaw was found in spice in versions before 0.14.92. A DoS tool might make it easier for remote attackers to cause a denial of service (CPU consumption) by performing many renegotiations within a single connection.
{ "binaries": [ { "binary_version": "0.12.4-0nocelt2ubuntu1.8+esm1", "binary_name": "libspice-server1" }, { "binary_version": "0.12.4-0nocelt2ubuntu1.8+esm1", "binary_name": "spice-client" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2021/UBUNTU-CVE-2021-20201.json"
{ "binaries": [ { "binary_version": "0.12.6-4ubuntu0.5", "binary_name": "libspice-server1" } ] }
{ "binaries": [ { "binary_version": "0.14.0-1ubuntu2.5", "binary_name": "libspice-server1" } ] }
{ "binaries": [ { "binary_version": "0.14.2-4ubuntu3.1", "binary_name": "libspice-server1" } ] }