CVE-2020-25651 is a flaw in the SPICE file transfer protocol, affecting spice-vdagent versions 0.20 and prior, including various Debian and Fedora distributions. This vulnerability allows an illegitimate local user in a virtual machine to potentially access file data from the host system, compromising data confidentiality. It also poses a denial-of-service risk by interrupting active file transfers. Rated Medium severity (CVSS 6.4), exploitation requires local access and high attack complexity, with impacts primarily on confidentiality and availability. There is no known active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 0.20.0CPE matchmatch criteria | cpe:2.3:a:spice-space:spice-vdagent:*:*:*:*:*:*:*:* | ||
9.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:* | ||
32CPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:* | ||
33CPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora:33:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:L
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.4 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
CVE-2020-25651
Jan 11, 2022A flaw was found in the SPICE file transfer protocol. File data from the host system can end up in full or in parts in the client connection of an illegitimate local user in the VM system. Active file transfers from other users could also be interrupted resulting in a denial of service. The highest threat from this vulnerability is to data confidentiality as well as system availability. This flaw affects spice-vdagent versions 0.20 and prior.
Nov 10, 2020spice-vdagent: possible file transfer DoS and information leak via active_xfers hash map
Nov 3, 2020