CVE-2016-9577 on Ubuntu 14.04 LTS (trusty) - medium.
Description:
A vulnerability was discovered in SPICE before 0.13.90 in the server's protocol handling. An authenticated attacker could send crafted messages to the SPICE server causing a heap overflow leading to a crash or possible code execution.