Rewterz Threat Advisory – CVE-2019-3813 – Amazon Linux update for spice
CVE-2019-3813 Spice, versions 0.5.2 through 0.14.1, are vulnerable to an out-of-bounds read due to an off-by-one error in memslot_get_virt. This may lead to a denial of service, or, in the worst case, code-execution by unauthenticated attackers.
Denial of Service
Amazon Linux 2
Apply updated packages via the yum package manager.