CVE-2008-5714 — Off-by-one Error in Qemu
Severity
7.8HIGHNVD
EPSS
0.7%
top 26.85%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 24
Latest updateMay 17
Description
Off-by-one error in monitor.c in Qemu 0.9.1 might make it easier for remote attackers to guess the VNC password, which is limited to seven characters where eight was intended.
CVSS vector
AV:N/AC:L/C:C/I:N/A:NExploitability: 10.0 | Impact: 6.9
Affected Packages3 packages
🔴Vulnerability Details
2📋Vendor Advisories
4💬Community
1Bugzilla▶
CVE-2008-5714 qemu: off-by-one error in monitor.c causing VNC passwords to be truncated after 7th character↗2009-01-23