The following flaw was reported by SUSE Security:
`spice-vdagentd` does not apply a limit to the amount of client connections that can be established via the UNIX domain socket in `/run/spice-vdagentd/spice-vdagent-sock`. Also existing connections aren't subject to a timeout or any kind of preconditions for them to stay alive. Any local user in the VM can prevent legitimate `spice-vdagent` instances from connecting to the `spice-vdagentd` daemon. `spice-vdagentd` will become unable to open further connections for legitimate clients or perform other tasks.
Name: Matthias Gerstner (SUSE Security Team)
Created spice-vdagent tracking bugs for this issue:
Affects: fedora-all [bug 1894435]