Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-2382

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2008-2382
Last Modified 07 Mar 2011 10:09:06
Published 24 Dec 2008 01:29:15
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2008-2382

Summary

The protocol_client_msg function in vnc.c in the VNC server in (1) Qemu 0.9.1 and earlier and (2) KVM kvm-79 and earlier allows remote attackers to cause a denial of service (infinite loop) via a certain message.

Vulnerable Systems

Application

  • Kvm Qumranet Kvm 1

  • Kvm Qumranet Kvm 10

  • Kvm Qumranet Kvm 11

  • Kvm Qumranet Kvm 12

  • Kvm Qumranet Kvm 13

  • Kvm Qumranet Kvm 14

  • Kvm Qumranet Kvm 15

  • Kvm Qumranet Kvm 16

  • Kvm Qumranet Kvm 17

  • Kvm Qumranet Kvm 18

  • Kvm Qumranet Kvm 19

  • Kvm Qumranet Kvm 2

  • Kvm Qumranet Kvm 20

  • Kvm Qumranet Kvm 21

  • Kvm Qumranet Kvm 22

  • Kvm Qumranet Kvm 23

  • Kvm Qumranet Kvm 24

  • Kvm Qumranet Kvm 25

  • Kvm Qumranet Kvm 26

  • Kvm Qumranet Kvm 27

  • Kvm Qumranet Kvm 28

  • Kvm Qumranet Kvm 29

  • Kvm Qumranet Kvm 3

  • Kvm Qumranet Kvm 30

  • Kvm Qumranet Kvm 31

  • Kvm Qumranet Kvm 32

  • Kvm Qumranet Kvm 33

  • Kvm Qumranet Kvm 34

  • Kvm Qumranet Kvm 35

  • Kvm Qumranet Kvm 36

  • Kvm Qumranet Kvm 37

  • Kvm Qumranet Kvm 38

  • Kvm Qumranet Kvm 39

  • Kvm Qumranet Kvm 4

  • Kvm Qumranet Kvm 40

  • Kvm Qumranet Kvm 41

  • Kvm Qumranet Kvm 42

  • Kvm Qumranet Kvm 43

  • Kvm Qumranet Kvm 44

  • Kvm Qumranet Kvm 45

  • Kvm Qumranet Kvm 46

  • Kvm Qumranet Kvm 47

  • Kvm Qumranet Kvm 48

  • Kvm Qumranet Kvm 49

  • Kvm Qumranet Kvm 5

  • Kvm Qumranet Kvm 50

  • Kvm Qumranet Kvm 51

  • Kvm Qumranet Kvm 52

  • Kvm Qumranet Kvm 53

  • Kvm Qumranet Kvm 54

  • Kvm Qumranet Kvm 55

  • Kvm Qumranet Kvm 56

  • Kvm Qumranet Kvm 57

  • Kvm Qumranet Kvm 58

  • Kvm Qumranet Kvm 59

  • Kvm Qumranet Kvm 6

  • Kvm Qumranet Kvm 60

  • Kvm Qumranet Kvm 61

  • Kvm Qumranet Kvm 62

  • Kvm Qumranet Kvm 63

  • Kvm Qumranet Kvm 64

  • Kvm Qumranet Kvm 65

  • Kvm Qumranet Kvm 66

  • Kvm Qumranet Kvm 67

  • Kvm Qumranet Kvm 68

  • Kvm Qumranet Kvm 69

  • Kvm Qumranet Kvm 7

  • Kvm Qumranet Kvm 70

  • Kvm Qumranet Kvm 71

  • Kvm Qumranet Kvm 72

  • Kvm Qumranet Kvm 73

  • Kvm Qumranet Kvm 74

  • Kvm Qumranet Kvm 75

  • Kvm Qumranet Kvm 76

  • Kvm Qumranet Kvm 77

  • Kvm Qumranet Kvm 78

  • Kvm Qumranet Kvm 79

  • Kvm Qumranet Kvm 8

  • Kvm Qumranet Kvm 9

  • Qemu 0.1

  • Qemu 0.1.1

  • Qemu 0.1.2

  • Qemu 0.1.3

  • Qemu 0.1.4

  • Qemu 0.1.5

  • Qemu 0.1.6

  • Qemu 0.2

  • Qemu 0.3

  • Qemu 0.4

  • Qemu 0.4.1

  • Qemu 0.4.2

  • Qemu 0.4.3

  • Qemu 0.5.0

  • Qemu 0.5.1

  • Qemu 0.5.2

  • Qemu 0.5.3

  • Qemu 0.5.4

  • Qemu 0.5.5

  • Qemu 0.6.0

  • Qemu 0.6.1

  • Qemu 0.7.0

  • Qemu 0.7.1

  • Qemu 0.7.2

  • Qemu 0.8.0

  • Qemu 0.8.1

  • Qemu 0.8.2

  • Qemu 0.9.0

  • Qemu 0.9.1


References

FEDORA - FEDORA-2008-11705

XF - qemu-kvm-protocolclientmsg-dos(47561)

VUPEN - ADV-2008-3489

VUPEN - ADV-2008-3488

UBUNTU - USN-776-1

BID - 32910

BUGTRAQ - 20081222 CORE-2008-1210: Qemu and KVM VNC server remote DoS

MISC - http://www.coresecurity.com/content/vnc-remote-dos

SECTRACK - 1021489

SECTRACK - 1021488

SREASON - 4803

SECUNIA - 35062

SECUNIA - 34642

SECUNIA - 33568

SECUNIA - 33350

SECUNIA - 33303

SECUNIA - 33293

SUSE - SUSE-SR:2009:008

SUSE - SUSE-SR:2009:002


Last Updated: 27 May 2016 10:47:50