Multiple integer overflow and buffer overflow issues were discovered in spice-client's handling of LZ compressed frames. A malicious server could cause the client to crash or, potentially, execute arbitrary code.
https://lists.freedesktop.org/archives/spice-devel/2018-July/044489.html
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10893