Loading HuntDB...

GHSA-p5xv-5g6h-qw33

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

A flaw was found in the QEMU built-in VNC server while processing ClientCutText messages. A wrong exit condition may lead to an infinite loop when inflating an attacker controlled zlib buffer in the `inflate_buffer` function. This could allow a remote authenticated client who is able to send a clipboard to the VNC server to trigger a denial of service.

Related CVEs

Key Information

GHSA ID
GHSA-p5xv-5g6h-qw33
Published
September 13, 2023 6:31 PM
Last Modified
May 22, 2024 6:30 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 18, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.