Логотип exploitDog
bind:"GHSA-2r4x-v526-vv9j" OR bind:"CVE-2018-10873"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-2r4x-v526-vv9j" OR bind:"CVE-2018-10873"

Количество 21

Количество 21

github логотип

GHSA-2r4x-v526-vv9j

больше 3 лет назад

A vulnerability was discovered in SPICE before version 0.14.1 where the generated code used for demarshalling messages lacked sufficient bounds checks. A malicious client or server, after authentication, could send specially crafted messages to its peer which would result in a crash or, potentially, other impacts.

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2018-10873

около 7 лет назад

A vulnerability was discovered in SPICE before version 0.14.1 where the generated code used for demarshalling messages lacked sufficient bounds checks. A malicious client or server, after authentication, could send specially crafted messages to its peer which would result in a crash or, potentially, other impacts.

CVSS3: 8.3
EPSS: Низкий
redhat логотип

CVE-2018-10873

около 7 лет назад

A vulnerability was discovered in SPICE before version 0.14.1 where the generated code used for demarshalling messages lacked sufficient bounds checks. A malicious client or server, after authentication, could send specially crafted messages to its peer which would result in a crash or, potentially, other impacts.

CVSS3: 8.3
EPSS: Низкий
nvd логотип

CVE-2018-10873

около 7 лет назад

A vulnerability was discovered in SPICE before version 0.14.1 where the generated code used for demarshalling messages lacked sufficient bounds checks. A malicious client or server, after authentication, could send specially crafted messages to its peer which would result in a crash or, potentially, other impacts.

CVSS3: 8.3
EPSS: Низкий
debian логотип

CVE-2018-10873

около 7 лет назад

A vulnerability was discovered in SPICE before version 0.14.1 where th ...

CVSS3: 8.3
EPSS: Низкий
oracle-oval логотип

ELSA-2018-2732

около 7 лет назад

ELSA-2018-2732: spice-gtk and spice-server security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2018-2731

около 7 лет назад

ELSA-2018-2731: spice and spice-gtk security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2019-00441

около 7 лет назад

Уязвимость функции write_validate_array_item() («demarshal.py») системы рендеринга удаленного виртуального «рабочего стола» SPICE (the Simple Protocol for Independent Computing Environments), связанная с недостаточной проверкой вводимых данных, позволяющая нарушителю получить доступ к конфиденциальной информации или вызвать отказ в обслуживании

CVSS3: 6.3
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:2730-1

около 7 лет назад

Security update for spice-gtk

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:2602-1

около 7 лет назад

Security update for spice

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:2601-1

около 7 лет назад

Security update for spice-gtk

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:2598-1

около 7 лет назад

Security update for spice

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:3842-1

почти 5 лет назад

Security update for spice

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:3841-1

почти 5 лет назад

Security update for spice-gtk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2709-1

около 7 лет назад

Security update for spice-gtk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2595-1

около 7 лет назад

Security update for spice

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2594-1

около 7 лет назад

Security update for spice-gtk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2593-1

около 7 лет назад

Security update for spice-gtk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2584-1

около 7 лет назад

Security update for spice

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2566-1

около 7 лет назад

Security update for spice

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2r4x-v526-vv9j

A vulnerability was discovered in SPICE before version 0.14.1 where the generated code used for demarshalling messages lacked sufficient bounds checks. A malicious client or server, after authentication, could send specially crafted messages to its peer which would result in a crash or, potentially, other impacts.

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2018-10873

A vulnerability was discovered in SPICE before version 0.14.1 where the generated code used for demarshalling messages lacked sufficient bounds checks. A malicious client or server, after authentication, could send specially crafted messages to its peer which would result in a crash or, potentially, other impacts.

CVSS3: 8.3
1%
Низкий
около 7 лет назад
redhat логотип
CVE-2018-10873

A vulnerability was discovered in SPICE before version 0.14.1 where the generated code used for demarshalling messages lacked sufficient bounds checks. A malicious client or server, after authentication, could send specially crafted messages to its peer which would result in a crash or, potentially, other impacts.

CVSS3: 8.3
1%
Низкий
около 7 лет назад
nvd логотип
CVE-2018-10873

A vulnerability was discovered in SPICE before version 0.14.1 where the generated code used for demarshalling messages lacked sufficient bounds checks. A malicious client or server, after authentication, could send specially crafted messages to its peer which would result in a crash or, potentially, other impacts.

CVSS3: 8.3
1%
Низкий
около 7 лет назад
debian логотип
CVE-2018-10873

A vulnerability was discovered in SPICE before version 0.14.1 where th ...

CVSS3: 8.3
1%
Низкий
около 7 лет назад
oracle-oval логотип
ELSA-2018-2732

ELSA-2018-2732: spice-gtk and spice-server security update (IMPORTANT)

около 7 лет назад
oracle-oval логотип
ELSA-2018-2731

ELSA-2018-2731: spice and spice-gtk security update (IMPORTANT)

около 7 лет назад
fstec логотип
BDU:2019-00441

Уязвимость функции write_validate_array_item() («demarshal.py») системы рендеринга удаленного виртуального «рабочего стола» SPICE (the Simple Protocol for Independent Computing Environments), связанная с недостаточной проверкой вводимых данных, позволяющая нарушителю получить доступ к конфиденциальной информации или вызвать отказ в обслуживании

CVSS3: 6.3
1%
Низкий
около 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2730-1

Security update for spice-gtk

около 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2602-1

Security update for spice

около 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2601-1

Security update for spice-gtk

около 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2598-1

Security update for spice

около 7 лет назад
suse-cvrf логотип
SUSE-SU-2020:3842-1

Security update for spice

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:3841-1

Security update for spice-gtk

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2018:2709-1

Security update for spice-gtk

около 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2595-1

Security update for spice

около 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2594-1

Security update for spice-gtk

около 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2593-1

Security update for spice-gtk

около 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2584-1

Security update for spice

около 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2566-1

Security update for spice

около 7 лет назад

Уязвимостей на страницу