Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2018-10893
Description:Multiple integer overflow and buffer overflow issues were discovered in spice-client's handling of LZ compressed frames. A malicious server could cause the client to crash or, potentially, execute arbitrary code.
Test IDs: 1.3.6.1.4.1.25623.1.1.2.2020.1727   1.3.6.1.4.1.25623.1.1.2.2020.1673   1.3.6.1.4.1.25623.1.1.2.2019.2266   1.3.6.1.4.1.25623.1.0.883180   1.3.6.1.4.1.25623.1.1.2.2019.2189  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2018-10893
RHSA-2019:2229
https://access.redhat.com/errata/RHSA-2019:2229
RHSA-2020:0471
https://access.redhat.com/errata/RHSA-2020:0471
[spice-devel] 20180703 [PATCH spice-common v3] lz: Avoid buffer reading overflow checking for image type
https://lists.freedesktop.org/archives/spice-devel/2018-July/044489.html
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10893
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10893




© 1998-2025 E-Soft Inc. All rights reserved.