CVE-2017-7506 on Ubuntu 16.04 LTS (xenial) - medium.
Description:
spice versions though 0.13 are vulnerable to out-of-bounds memory access when processing specially crafted messages from authenticated attacker to the spice server resulting into crash and/or server memory leak.