Описание
Multiple integer overflow and buffer overflow issues were discovered in spice-client's handling of LZ compressed frames. A malicious server could cause the client to crash or, potentially, execute arbitrary code.
Multiple integer overflow and buffer overflow issues were discovered in spice-client's handling of LZ compressed frames. A malicious server could cause the client to crash or, potentially, execute arbitrary code.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2018-10893
- https://access.redhat.com/errata/RHSA-2019:2229
- https://access.redhat.com/errata/RHSA-2020:0471
- https://access.redhat.com/security/cve/CVE-2018-10893
- https://bugzilla.redhat.com/show_bug.cgi?id=1598234
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10893
- https://lists.freedesktop.org/archives/spice-devel/2018-July/044489.html
Связанные уязвимости
Multiple integer overflow and buffer overflow issues were discovered in spice-client's handling of LZ compressed frames. A malicious server could cause the client to crash or, potentially, execute arbitrary code.
Multiple integer overflow and buffer overflow issues were discovered in spice-client's handling of LZ compressed frames. A malicious server could cause the client to crash or, potentially, execute arbitrary code.
Multiple integer overflow and buffer overflow issues were discovered in spice-client's handling of LZ compressed frames. A malicious server could cause the client to crash or, potentially, execute arbitrary code.
Multiple integer overflow and buffer overflow issues were discovered i ...