Back to bug 2129739

Who When What Removed Added
Mauro Matteo Cascella 2022-09-26 09:26:08 UTC Depends On 2129759, 2129760, 2129761
Mauro Matteo Cascella 2022-09-26 09:58:59 UTC Doc Text An integer underflow issue was found in the QEMU VNC server while processing ClientCutText messages in the extended format. A malicious client could use this flaw to make QEMU unresponsive by sending a specially crafted payload message, resulting in a denial of service condition.
RaTasha Tillery-Smith 2022-09-26 11:42:29 UTC Doc Text An integer underflow issue was found in the QEMU VNC server while processing ClientCutText messages in the extended format. A malicious client could use this flaw to make QEMU unresponsive by sending a specially crafted payload message, resulting in a denial of service condition. An integer underflow issue was found in the QEMU VNC server while processing ClientCutText messages in the extended format. A malicious client could use this flaw to make QEMU unresponsive by sending a specially crafted payload message, resulting in a denial of service.
Mauro Matteo Cascella 2022-10-17 09:03:51 UTC Fixed In Version qemu 7.2.0-rc0
errata-xmlrpc 2023-05-09 07:13:08 UTC Link ID Red Hat Product Errata RHSA-2023:2162
errata-xmlrpc 2023-05-16 08:08:21 UTC Link ID Red Hat Product Errata RHSA-2023:2757
Product Security DevOps Team 2023-05-17 01:43:09 UTC Resolution --- ERRATA
Status NEW CLOSED
Last Closed 2023-05-17 01:43:09 UTC
Mauro Matteo Cascella 2023-06-29 10:40:50 UTC Doc Text An integer underflow issue was found in the QEMU VNC server while processing ClientCutText messages in the extended format. A malicious client could use this flaw to make QEMU unresponsive by sending a specially crafted payload message, resulting in a denial of service. An integer underflow issue was found in the QEMU built-in VNC server while processing ClientCutText messages in the extended format. A malicious client could use this flaw to make QEMU unresponsive by sending a specially crafted payload message, resulting in a denial of service.

Back to bug 2129739