Lucene search

K
cve[email protected]CVE-2008-5714
HistoryDec 24, 2008 - 6:29 p.m.

CVE-2008-5714

2008-12-2418:29:15
CWE-189
web.nvd.nist.gov
39
cve-2008-5714
off-by-one error
monitor.c
qemu 0.9.1
remote attackers
vnc password

7.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

7.4 High

AI Score

Confidence

High

0.007 Low

EPSS

Percentile

79.9%

Off-by-one error in monitor.c in Qemu 0.9.1 might make it easier for remote attackers to guess the VNC password, which is limited to seven characters where eight was intended.

Affected configurations

NVD
Node
qemuqemuMatch0.9.1
CPENameOperatorVersion
qemu:qemuqemueq0.9.1

7.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

7.4 High

AI Score

Confidence

High

0.007 Low

EPSS

Percentile

79.9%