Multiple integer overflow and buffer overflow issues were discovered in spice-client's handling of LZ compressed frames. A malicious server could cause the client to crash or, potentially, execute arbitrary code.
References
Link | Resource |
---|---|
https://lists.freedesktop.org/archives/spice-devel/2018-July/044489.html | Mailing List Patch Third Party Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10893 | Issue Tracking Patch Third Party Advisory |
https://access.redhat.com/errata/RHSA-2019:2229 | |
https://access.redhat.com/errata/RHSA-2020:0471 |
Configurations
Information
Published : 2018-09-11 08:29
Updated : 2023-02-12 15:31
NVD link : CVE-2018-10893
Mitre link : CVE-2018-10893
JSON object : View
Products Affected
spice_project
- spice