CVE-2023-6683

CVSS V2 None CVSS V3 None
Description
A flaw was found in the QEMU built-in VNC server while processing ClientCutText messages. The qemu_clipboard_request() function can be reached before vnc_server_cut_text_caps() was called and had the chance to initialize the clipboard peer, leading to a NULL pointer dereference. This could allow a malicious authenticated VNC client to crash QEMU and trigger a denial of service.
Overview
  • CVE ID
  • CVE-2023-6683
  • Assigner
  • redhat
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-01-12T19:01:25.542Z
  • Last Modified Date
  • 2024-05-29T23:07:29.101Z
References
History
Created Old Value New Value Data Type Notes
2024-06-25 06:22:00 Added to TrackCVE