yocto ▾
›
scarthgap ▾
›
vulnerability
›
CVE-2016-2150
Component Overview
Vulnerability Overview
Name
CVE-2016-2150
Source
NVD (
link
)
Debian (
link
)
Description
SPICE allows local guest OS users to read from or write to arbitrary host memory locations via crafted primary surface parameters, a similar issue to CVE-2015-5261.
CWEs
CWE-284
Published Date
Jun 9, 2016
Updated Date
Jun 17, 2026
Workaround
-
Advisories
Analysis
#
Affected Component
Analysis
spice
Not Affected
Vulnerability Ratings
#
7.1
other
3.6
CVSSv2
Others affected components
#
Name
Project
Project Version
Version
Status
spice
buildroot
2025.02.x
0.15.2
Not Affected
spice
buildroot
master
0.15.2
Not Affected
spice
openwrt
master
0.15.0-r3
Not Affected
spice
openwrt
openwrt-25.12
0.15.0-r3
Not Affected
spice
yocto
kirkstone
0.14.2+gitX
Not Affected
spice
yocto
master
0.16.0
Not Affected