A vulnerability was discovered in SPICE before version 0.14.1 where the generated code used for demarshalling messages lacked sufficient bounds checks. A malicious client or server, after authentication, could send specially crafted messages to its peer which would result in a crash or, potentially, other impacts.
{
"versions": [
{
"introduced": "0"
},
{
"fixed": "0.14.1"
}
]
}[
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "8.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "9.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "14.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "16.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "18.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "4.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "4.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "6.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "6.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.6"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.5"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.6"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.6"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "6.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.0"
}
]
}
]
[
{
"signature_type": "Line",
"deprecated": false,
"id": "CVE-2018-10873-361f0cc0",
"target": {
"file": "tests/test-marshallers.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"237635957984403839304665832143033537380",
"59811238309738357804800226278278585342",
"131838818256843794640739880791407204304"
]
},
"signature_version": "v1",
"source": "https://gitlab.freedesktop.org/spice/spice-common@bb15d4815ab586b4c4a20f4a565970a44824c42c"
},
{
"signature_type": "Line",
"deprecated": false,
"id": "CVE-2018-10873-62f66cc9",
"target": {
"file": "tests/test-marshallers.h"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"250808978833896652379186067368034359240"
]
},
"signature_version": "v1",
"source": "https://gitlab.freedesktop.org/spice/spice-common@bb15d4815ab586b4c4a20f4a565970a44824c42c"
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-10873.json"