Oval Definition:oval:org.mitre.oval:def:22960
Revision Date:2014-05-26Version:13
Title:ELSA-2010:0632: qspice-client security update (Moderate)
Description:Race condition in the SPICE (aka spice-xpi) plug-in 2.2 for Firefox allows local users to obtain sensitive information, and conduct man-in-the-middle attacks, by providing a UNIX socket for communication between this plug-in and the client (aka qspice-client) in qspice 0.3.0, and then accessing this socket.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2010-2792
ELSA-2010:0632-03
Platform(s):Oracle Linux 5
Product(s):qspice-client
Definition Synopsis
  • Oracle Linux 5.x
  • AND qspice-client is earlier than 0:0.3.0-4.el5_5
  • BACK