Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-3165

An integer underflow issue was found in the QEMU VNC server while processing ClientCutText messages in the extended format. A malicious client could use this flaw to make QEMU unresponsive by sending a specially crafted payload message, resulting in a denial of service.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 27.2%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2022-3165
  • Qemu » Qemu » Version: 07-20-2020
    cpe:2.3:a:qemu:qemu:07-20-2020
  • Qemu » Qemu » Version: 6.1.0
    cpe:2.3:a:qemu:qemu:6.1.0
  • Qemu » Qemu » Version: 6.1.50
    cpe:2.3:a:qemu:qemu:6.1.50
  • Qemu » Qemu » Version: 6.2.0
    cpe:2.3:a:qemu:qemu:6.2.0
  • Qemu » Qemu » Version: 6.2.0-7
    cpe:2.3:a:qemu:qemu:6.2.0-7
  • Qemu » Qemu » Version: 7.0.0
    cpe:2.3:a:qemu:qemu:7.0.0
  • Qemu » Qemu » Version: 7.1.0
    cpe:2.3:a:qemu:qemu:7.1.0
  • Fedoraproject » Fedora » Version: 36
    cpe:2.3:o:fedoraproject:fedora:36
  • Fedoraproject » Fedora » Version: 37
    cpe:2.3:o:fedoraproject:fedora:37


Contact Us

Shodan ® - All rights reserved