Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Fiona Ebner

Pesquisador deProxmox
#40020de 53,635
6.8CVSS total
Vulnerabilidades · 1
PT-2023-8255
6.8
2023-12-16
Qemu · Qemu · CVE-2023-6683
**Name of the Vulnerable Software and Affected Versions** QEMU (affected versions not specified) **Description** A flaw was found in the QEMU built-in VNC server while processing ClientCutText messages. The `qemu clipboard request()` function can be reached before `vnc server cut text caps()` was called and had the chance to initialize the clipboard peer, leading to a NULL pointer dereference. This could allow a malicious authenticated VNC client to crash QEMU and trigger a denial of service. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.