CVE Vulnerabilities

CVE-2008-2382

Published: Dec 24, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

The protocol_client_msg function in vnc.c in the VNC server in (1) Qemu 0.9.1 and earlier and (2) KVM kvm-79 and earlier allows remote attackers to cause a denial of service (infinite loop) via a certain message.

Affected Software

NameVendorStart VersionEnd Version
QemuQemu*0.9.1 (including)
QemuQemu0.1.0 (including)0.1.0 (including)
QemuQemu0.1.1 (including)0.1.1 (including)
QemuQemu0.1.2 (including)0.1.2 (including)
QemuQemu0.1.3 (including)0.1.3 (including)
QemuQemu0.1.4 (including)0.1.4 (including)
QemuQemu0.1.5 (including)0.1.5 (including)
QemuQemu0.1.6 (including)0.1.6 (including)
QemuQemu0.2.0 (including)0.2.0 (including)
QemuQemu0.3.0 (including)0.3.0 (including)
QemuQemu0.4.0 (including)0.4.0 (including)
QemuQemu0.4.1 (including)0.4.1 (including)
QemuQemu0.4.2 (including)0.4.2 (including)
QemuQemu0.4.3 (including)0.4.3 (including)
QemuQemu0.5.0 (including)0.5.0 (including)
QemuQemu0.5.1 (including)0.5.1 (including)
QemuQemu0.5.2 (including)0.5.2 (including)
QemuQemu0.5.3 (including)0.5.3 (including)
QemuQemu0.5.4 (including)0.5.4 (including)
QemuQemu0.5.5 (including)0.5.5 (including)
QemuQemu0.6.0 (including)0.6.0 (including)
QemuQemu0.6.1 (including)0.6.1 (including)
QemuQemu0.7.0 (including)0.7.0 (including)
QemuQemu0.7.1 (including)0.7.1 (including)
QemuQemu0.7.2 (including)0.7.2 (including)
QemuQemu0.8.0 (including)0.8.0 (including)
QemuQemu0.8.1 (including)0.8.1 (including)
QemuQemu0.8.2 (including)0.8.2 (including)
QemuQemu0.9.0 (including)0.9.0 (including)
KvmUbuntugutsy*
KvmUbuntuhardy*
KvmUbuntuintrepid*
QemuUbuntudapper*
QemuUbuntugutsy*
QemuUbuntuhardy*
QemuUbuntuintrepid*
QemuUbuntujaunty*

References