[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

255116

 
 

909

 
 

198683

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2018-10873 -- spice

ID: oval:org.secpod.oval:def:2000020Date: (C)2019-05-30   (M)2023-12-20
Class: VULNERABILITYFamily: unix




A vulnerability was discovered in SPICE before version 0.14.1 where the generated code used for demarshalling messages lacked sufficient bounds checks. A malicious client or server, after authentication, could send specially crafted messages to its peer which would result in a crash or, potentially, other impacts.

Platform:
Debian 8.x
Debian 9.x
Product:
libspice-server-dev
libspice-client-glib-2.0-dev
Reference:
CVE-2018-10873
CVE    1
CVE-2018-10873
CPE    4
cpe:/a:spice-space:libspice-server-dev
cpe:/o:debian:debian_linux:8.x
cpe:/o:debian:debian_linux:9.x
cpe:/a:spice-space:libspice-client-glib-2.0-dev
...

© SecPod Technologies