CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.8. It may lead to a denial-of-service condition.
CVE
CVE-2015-5260
Severity
HIGH
CVSS
7.8
EPSS
0.57%
Original NVD Description
Heap-based buffer overflow in SPICE before 0.12.6 allows guest OS users to cause a denial of service (heap-based memory corruption and QEMU-KVM crash) or possibly execute arbitrary code on the host via QXL commands related to the surface_id parameter.