7.5 High
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
0.001 Low
EPSS
Percentile
21.2%
The QEMU hardware emulator vulnerability is related to the VNC server, when a client connects to the
server, QEMU checks if the current number of connections exceeds a certain threshold, and if so,
clears the previous connection, if the previous connection is in the confirmation phase and fails, QEMU clears the previous connection again.
failure, QEMU clears the connection again, resulting in a null pointer dereferencing problem.
Exploitation of the vulnerability could allow an attacker acting remotely, who has not been authenticated, to cause a denial of service.
authentication to cause a denial of service.