Vulnerability CVE-2022-3165


Published: 2022-10-17

Description:
An integer underflow issue was found in the QEMU VNC server while processing ClientCutText messages in the extended format. A malicious client could use this flaw to make QEMU unresponsive by sending a specially crafted payload message, resulting in a denial of service.

Type:

CWE-191

(Integer Underflow (Wrap or Wraparound))

 References:
https://gitlab.com/qemu-project/qemu/-/commit/d307040b18

Copyright 2024, cxsecurity.com

 

Back to Top