CVE-2013-4282 on Ubuntu 16.04 LTS (xenial) - medium.
Description:
Stack-based buffer overflow in the reds_handle_ticket function in server/reds.c in SPICE 0.12.0 allows remote attackers to cause a denial of service (crash) via a long password in a SPICE ticket.