<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 10 Oct 2026 12:03:18 +0000</lastBuildDate>
    <item>
      <title>cnvd-2018-03240</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2018-03240</link>
      <description>cnvd-2018-03240</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2018-03240</guid>
    </item>
    <item>
      <title>EUVD-2026-78452</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-78452</link>
      <description>EUVD-2026-78452</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-78452</guid>
    </item>
    <item>
      <title>fkie_cve-2017-15108</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-15108</link>
      <description>&lt;p&gt;spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-15108</guid>
    </item>
    <item>
      <title>GHSA-rx22-vq3w-89rg</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-rx22-vq3w-89rg</link>
      <description>&lt;p&gt;spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-rx22-vq3w-89rg</guid>
    </item>
    <item>
      <title>gsd-2017-15108</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-15108</link>
      <description>gsd-2017-15108</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-15108</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:11399-1 — spice-vdagent-0.21.0-1.7 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:11399-1</link>
      <description>&lt;p&gt;spice-vdagent-0.21.0-1.7 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;spice-vdagent-0.21.0-1.7 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:11399-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2018:0372-1 — security update for spice-vdagent</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2018:0372-1</link>
      <description>&lt;p&gt;security update for spice-vdagent&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;security update for spice-vdagent&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2018:0372-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2017-15108</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-15108</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: spice-vdagent, Ubuntu:18.04:LTS: spice-vdagent&lt;/p&gt;
&lt;p&gt;spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: spice-vdagent, Ubuntu:18.04:LTS: spice-vdagent&lt;/p&gt;
&lt;p&gt;spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-15108</guid>
    </item>
  </channel>
</rss>
